Security
Current controls, stated plainly.
Titan Link distinguishes controls that are implemented and evidenced from controls that are planned. A roadmap item is not a security claim.
Implemented and evidenced today
| Area | Current control |
|---|---|
| Corporate website | Static informational pages with no account, password, payment, upload, analytics, advertising, or web-form collection. |
| Commerce Cockpit code boundary | Store-scoped tenant/provider binding, cross-store denial tests, strict read-response schemas, secret-free client responses, and explicit exclusion of buyer/order data in the current PoC. |
| Credential exposure | Marketplace credentials are designed to remain server-side behind opaque references. No Etsy or TikTok seller OAuth credential is currently active in Commerce Cockpit. |
| Current pilot files | Dedicated service identity and owner-only filesystem permissions are evidenced. Current file-vault content is plaintext at rest; this does not satisfy an encrypted-secret-storage claim. |
| Product separation | Operator Bridge and Commerce Cockpit are defined as separate products with separate target nodes, identities, databases, credential stores, backups, and deployment paths. |
Planned before broader marketplace activation
| Area | Planned control and gate |
|---|---|
| Infrastructure | Separate Titan Link-owned AWS nodes for Operator Bridge and Commerce Cockpit, with protected data isolated from unverified root storage. |
| Encryption and keys | Provider-encrypted data volumes and snapshots plus application-layer authenticated encryption for marketplace secrets, with keys held outside the data/snapshot boundary. |
| Identity and access | Product-specific least-privilege runtime roles, named administrators, MFA, access reviews, denied-access tests, and controlled break-glass recovery. |
| Backups | Defined retention, encrypted snapshots, isolated restore drills, deletion propagation, and evidence that keys do not enter backups. |
| Operations | Monitoring, vulnerability management, rotation, incident escalation, exercises, and retained evidence suitable for the applicable marketplace review. |
Marketplace-specific scope
Etsy and eBay requirements are evaluated against their own APIs, terms, approved scopes, and security obligations. TikTok Shop US ISV/DSPR review has a broader documented evidence baseline, including encryption at rest and in transit, key management, access controls, vendor governance, vulnerability management, and incident response. Because TikTok is a planned Commerce Cockpit provider, the Cockpit production runtime is being designed to meet that higher baseline from the start rather than maintaining a weaker parallel runtime.
Reporting
Email security@titanlinkinc.com with the affected service, a concise description, and safe reproduction details. Do not include passwords, API keys, OAuth tokens, session cookies, recovery material, identity documents, or live seller data.