BellPath by DSBBellPathOSSecurity
BellPathOS v1.6

Security Center

Security hardening and SOC 2 readiness controls for the public BellPathOS client site.

SOC 2 readinessLocal-first privacyClient-owned secretsCloudflare hardened
Security posture

Built for controlled beta, not certified SOC 2 yet

This build adds SOC 2 readiness controls, public-package cleanup, hardened headers, data classification, client-owned Plaid/AI key boundaries, and audit evidence templates. Formal SOC 2 still requires an independent CPA audit and operating evidence over time.

Launch blockers

Before public scale

Security modules

Controls added in v1.6

Headers

Browser hardening now included

The Cloudflare Pages _headers file now includes HSTS, frame denial, nosniff, stricter referrer policy, restrictive permissions policy, cross-origin isolation helpers, and an operational Content Security Policy plus strict report-only CSP for future inline-code cleanup.

BellPathOS Menu
HomeCommand centerAppsLauncherClient SetupProfile, keys, connectorsSecurity CenterSOC 2 readinessSOC 2 ReadinessControl mapSecurity CheckBrowser checksData ControlExport/deleteTrust CenterPrivacy & securitySupportContact BellPath