SECURITY

Private by default. Encrypted by design.

JustDocs encrypts vault secrets at rest with AES-256 and all data in transit over HTTPS. Access is private by default with granular admin, editor, and viewer roles, and Enterprise adds SSO, SCIM, audit logs, and data residency.

ENCRYPTION

Encrypted in transit and at rest

All workspace data is encrypted in transit over HTTPS, and secrets stored in the vault are encrypted at rest with AES-256. Keys and credentials live beside the docs that use them, never in a plaintext chat thread.

ACCESS CONTROL

Private by default, least privilege

Every space and document is private by default. Access is granted explicitly through admin, editor, and viewer roles, so a teammate sees nothing until you share it. Vault secrets honor the same roles, so only authorized members can reveal a value.

ENTERPRISE

SSO, SCIM, audit logs, and SLA

The Enterprise plan adds single sign-on (SSO) and SCIM provisioning to enforce your identity provider and automate onboarding and offboarding. Audit logs cover access and changes, data-residency options are available, and Enterprise carries a 99.9% uptime SLA.

Need a security review or DPA?

Enterprise teams can request our security documentation, data-processing agreement, and a walkthrough with the team.

SECURITY FAQ

Security questions, answered

How does JustDocs secure secrets and API keys?

Secrets stored in the JustDocs vault are encrypted at rest with AES-256 and live beside the docs that use them. Access is governed by the same granular roles and permissions as the rest of the workspace, so only authorized members can reveal a value, and everything is private by default.

Is JustDocs private by default?

Yes. Every space and document in JustDocs is private by default. Access is granted explicitly through roles — admin, editor, and viewer — so nothing is visible to a teammate until you share it. This least-privilege model means new content is never accidentally exposed.

Does JustDocs support SSO and SCIM?

Single sign-on (SSO) and SCIM user provisioning are available on the Enterprise plan, alongside audit logs and data-residency options. This lets larger organizations enforce their identity provider, automate onboarding and offboarding, and meet compliance requirements.

Where is JustDocs data stored and is it encrypted?

Workspace data is encrypted in transit over HTTPS and vault secrets are encrypted at rest with AES-256. Enterprise customers can choose data-residency options and receive audit logs covering access and changes. A 99.9% uptime SLA is available on the Enterprise plan.