generated: '2026-07-18' method: searched probe: false source: https://constellation.space/security url: https://constellation.space/security note: >- Constellation publishes a security practices page (not a dedicated trust portal). No named third-party certifications (SOC 2, ISO 27001, PCI DSS, HIPAA, FedRAMP) are claimed as of this pass; enterprise customers may request documentation, questionnaires, or security review under NDA. certifications: [] practices: data_handling: Customer telemetry/topology remain customer data; not sold, not used to train shared models; production tenants isolated. encryption: TLS 1.2+ in transit; encryption at rest for persisted telemetry, credentials, and audit logs. access_control: Role-based access in console and API; automated orchestration runs only under operator-defined policy; admin actions and API calls logged for audit. infrastructure: Hardened cloud infrastructure; separate dev and prod environments; regular patch cadence; restricted production access. availability: Platform health and incident history on the status page (https://status.constellation.space/). enterprise: deployment: [AWS, Azure, GCP, AWS GovCloud, on-premises / air-gapped] controls: [SSO, RBAC, audit] nda_docs: true contact: contact@constellation.space