Security & platform control

Designed around tenant isolation, controlled access and auditable change.

SiteTools UK separates the central commercial control plane from each subscribing company's operational tenant.

ST

Isolated tenants

Each subscribing company has a separate tenant identity and operational database/schema reference. Cross-tenant access is not part of the normal application model.

Signed entitlements

The central platform signs licence payloads asymmetrically. Tenant packages only need the public verification key; the signing private key remains central.

Permissions + licensing

A feature must be licensed for the company and allowed for the individual user. Neither check replaces the other.

Secure application controls

Prepared statements, CSRF protection, secure sessions, password hashing, rate limiting and production HTTPS assumptions are built into the central package.

Audited administration

Subscription, plan, add-on, seat, tenant-state, licence and support actions are designed to be recorded centrally.

Resilient licensing

Tenant licences can be cached for a limited period so a short central-platform outage does not immediately disable customers.

Operating principles

Commercial controls should not create unsafe operational surprises.

Past dueContinue operating with billing warnings.
GracePreserve essential work while restricting expansion.
SuspendedPrefer read-only company access and billing recovery paths.
CancelledRetain read-only access during the configured retention period.

Need to discuss hosting, security or tenant architecture?