Security Standards
Document: SEC-000Type: HandbookStatus: ApprovedOwner: Cloudberrie Leadership & EngineeringVersion: 4.2.0Updated: 2026-07-17
Approved Baseline
Protect Cloudberrie credentials, access, and recovery information.โ
This handbook defines the current startup-stage security controls and the conditions that trigger migration to business-grade access management.
Apple PasswordsApproved for 2026
UTCInfrastructure time standard
AnnualFormal review cycle
Security Standardsโ
Credentials
SEC-001 Credential Managementโ
Approved vault, naming, recovery-code storage, and migration trigger.
Authentication
SEC-002 MFA Standardโ
Required controls for Tier 1 platforms and recovery methods.
Recovery
SEC-004 Backup & Recoveryโ
Offline recovery copy, restoration tests, and emergency handling.
2026 Current Stateโ
| Control | Cloudberrie Standard | Status |
|---|---|---|
| Password manager | Apple Passwords | Approved |
| Shared password documents | Prohibited | Enforced |
| Cloudflare MFA | Enabled, backup codes stored in Apple Passwords | Implemented |
| Infrastructure timezone | UTC | Approved |
| Business password manager review | January 2027, or earlier when trigger conditions occur | Scheduled |