Encryption in transit
HTTPS/TLS protects web traffic, including authentication and operational data moving between TankActive and your browser.
Security
Every claim on this page is backed by product behavior and published policy — no badge wall, no unverifiable certifications.
This page describes security practices at a high level. It is not a certification registry or a substitute for the privacy policy. We intentionally avoid claiming audits or certifications that are not publicly documented here.
TankActive protects web traffic with HTTPS/TLS, hashes passwords, rotates authentication tokens, manages sessions, and applies role-aware authorization checks. Account-lifecycle workflows can revoke access. These controls describe repository-backed behavior at a high level; they are not an independent audit or certification.
HTTPS/TLS protects web traffic, including authentication and operational data moving between TankActive and your browser.
Password hashing, token rotation, and session controls reduce unauthorized-access risk. Microsoft Entra ID single sign-on is available for organizations.
Role-aware access checks, administrative separation, and audit-oriented workflows govern who can see and change information across the product.
Account deletion workflows are supported, and retained personal data is limited to what operations and applicable recordkeeping require.
TankActive combines application, data, access-management, and operational safeguards. In the repository, these appear as request validation, browser security headers, authorization checks, scoped data access, account lifecycle controls, deployment workflows, monitoring, and a direct support escalation path.
Security questions and urgent concerns are routed through support for review and response — include steps to reproduce where possible.