Encryption, controlled access and tested recovery protect different parts of your business. We’ll explain the controls and agree what your system needs before we build it.
Choose who can change your records.
A salesperson can view an invoice while Finance records its payment. Switch roles below to see how the same record behaves for different staff.
Staff permissions · invoice accessInteractive example
Choose a staff role
This example uses local permission rules. Production permissions must also be enforced and tested on the server.
INV-3091Unpaid
Evergreen Builders
S$2,592
Sales has view-only access
Try recording a payment to see the permission check, then switch to Finance.
Adapted from Ceus One Demo · fictional data · no live transactions
Role-based access control (RBAC). Your team agrees the permissions; the application must enforce them on the server.
Know how your business gets back to work.
A restore test should end with an invoice you can open, totals you can check and files you can retrieve. We agree the recovery targets, then test against them.
Backup copyRecords, files and configuration
Restore in a separate environment
INV-3091Recovered copy
Evergreen Builders
S$2,592
Open the invoice
Compare the total
Retrieve its attachments
Illustrative recovery sequence using fictional records. Actual results are recorded during your project’s restore test.
Recovery point objective (RPO)
Agree how much recent work could be lost between the last recoverable copy and an incident.
Recovery time objective (RTO)
Agree the target time to bring a usable system back, then measure it in a restore test.
Retrieval-augmented generation (RAG) must check access before fetching records. Restrict AI actions to approved tools and require human approval for consequential changes.
You or your technical adviser can review the controls, provider choices and verification results with us.
What is SHA-256 used for?
SHA-256 creates a digital fingerprint, or hash, of information. Comparing it with a trusted original can help check whether a transferred file has changed. It does not encrypt the file or keep its contents private. For migration, file checksums can complement record counts and balance checks. Passwords need a dedicated password-hashing method, such as Argon2id; plain SHA-256 is not suitable for password storage.
Where will our information be stored?
We’ll explain the proposed storage location, services that receive your records and who can access them. The project checks cover encryption during transfer and storage, and removing access granted to Ceus or other providers. Cloud hosting protects part of the system; we’ll also document the responsibilities of Ceus, your team and the hosting provider.
Will AI use our confidential information?
Only the sources agreed for the AI feature should be available to it. We’ll document what leaves your system, which provider receives it, where it is processed and the account’s retention and training settings. Customer records, internal documents and message history need separate decisions. A promise that data is not used for training does not, by itself, mean the provider retains nothing.
Can you meet our security requirements?
Share your requirements during discovery so we can assess the fit. Independent testing, specific certifications, private hosting or regulated workloads need separate assessment and scope. A hosting provider's certification does not certify the application built on it.