End-to-end encryption, fine-grained permissions (RBAC), full audit logs, SSO and data residency to meet team and enterprise compliance.
Security & compliance — encryption, audit and data residency
For AI coding, security and compliance are the foundation, not an add-on. Dawvia makes encryption, permissions, audit and data residency platform capabilities, so teams stay compliant while consolidating Cursor / Windsurf logins into an account pool.
End-to-end encryption
- Credentials and data are encrypted end to end — keys never land or leak.
- Accounts are encrypted and centrally rotated on connect; see Connect accounts.
- Encryption spans the full call path through quota balancing and
Fine-grained permissions (RBAC)
- Role-based, fine-grained permissions follow least-privilege and tune on demand.
- The grant model for seats, departments and roles is in
Team & organization management.
- Enterprise SSO unifies identity and access control.
Full audit
- Every call and change is traceable — replayable and exportable.
- Audit views and call chains render on one screen in the remote console.
- Export audit data to plug into internal risk and compliance review.
Data residency and indexing boundaries
- Optional regional deployment keeps data in your domain to satisfy residency needs.
- Marketing and docs pages are indexable; app and admin surfaces are noindex by default, so
sensitive data is not exposed.
- Cross-border handling and user rights are in the privacy policy and
# Inspect the deployment's compliance matrix (region, residency, audit export)
dawvia compliance status
Coverage by plan
Enterprise security governance (SSO, data residency, full audit export) starts on Team, with everything on Enterprise. Compare on the features overview and the pricing page; for private deployment and an SLA, contact us.
Next steps
- Team and role governance: Team & organization management
- Observability and audit: Remote console
- Legal terms: privacy policy · terms of service