Secure by design
Security is not an add-on. Host auth keys are encrypted at rest with AES-256-GCM, every outbound connection is SSRF-guarded, and your session lives in an httpOnly cookie.
- Auth keys encrypted at rest (AES-256-GCM)
- SSRF-guarded host connections
- httpOnly session cookies