| Security controls | How are credentials, tenant scope, client memberships, sessions, and audit records protected? | Security explains encrypted credential envelopes, redacted token material, role-aware access, tenant scope, audit records, and compliance workflows. |
|---|
| Account security | How do signup, login, Google access, password recovery, sessions, and invited access stay scoped? | Account security and recovery explains email and Google access, signed OAuth state, scoped sessions, password reset behavior, invite acceptance, and redacted auth responses. |
|---|
| Data lineage | Which public claims map to source records, validation paths, and user-visible reporting surfaces? | Data lineage maps route-level claims to the source paths, validation gates, and reporting surfaces that make those claims supportable. |
|---|
| Connector health | How does SIRJ show stale data, missing setup, reconnect needs, or provider failures before reporting? | Connector health exposes setup state, sync cadence, recent runs, reconnect needs, stale data, repeated failures, and severity before reports use a source. |
|---|
| Metric support | Which dashboard, Ask Data, weekly insight, and report numbers are defined before buyers rely on them? | Metric definitions explain ROAS, cost per lead, attributed revenue, campaign performance, source filters, unsupported states, and required evidence. |
|---|
| Exports and deletion | How can data leave the system, be retained, or be removed safely inside client scope? | Exports and destinations explain PDF report exports, report history, scoped tenant data packages, retention workflows, and destination boundaries. |
|---|
| Public policies | Where are customer-facing data, product, billing, privacy, and legal boundaries written down? | Disclosures, privacy, and terms name attribution limits, AI-assisted answer boundaries, integration dependencies, billing rules, privacy expectations, and customer responsibilities. |
|---|