Service design principles
Security controls are shaped around the operational responsibilities of growers, managers, technicians and administrators.
Controlled provisioning
There is no public self-registration. Customer access is provided during approved onboarding.
Least authority
Roles should grant only the facilities and actions a user needs to perform their work.
Change history
Relevant configuration changes and manual interventions should be recorded against an accountable user.
Deployment boundaries
Connections, supported equipment and fallback behavior are defined for each customer scope.
