Home / Security
Security

Security controls built around access, permissions and controlled infrastructure operations.

CloudBalkan protects the control plane with account verification, two-factor authentication, permission-aware operations and explicit confirmation for sensitive AI Operator actions.

Two-factor authenticationAvailable in Account Security
Permission-aware accessResources and operations follow account context
Action confirmationRequired for supported sensitive operations
Operational historyActions remain attributable and reviewable
Control plane

Protect the account before protecting anything behind it.

Email verification

Account workflows use verified email ownership as part of the customer access model.

Two-factor authentication

Customers can add a second authentication factor and recovery codes for Control Center access.

Tenant-aware authorization

Customer resources are accessed through the authenticated account and tenant context rather than a shared global resource view.

Role-aware administration

Privileged platform operations remain separate from normal customer operations.

SSH key inventory

Customers can maintain SSH public keys used for supported Cloud Server access workflows.

Stripe-hosted top-ups

Account Credits are funded through Stripe-hosted Checkout rather than a custom card-entry form inside the Control Center.

AI Operator guardrails

Natural-language requests do not mean unrestricted access.

AI Operator works through defined CloudBalkan operations and the permissions available to the authenticated user.

  • Relevant tools are selected according to the request and permission context.
  • Disruptive or sensitive actions can require explicit confirmation.
  • The model is not given arbitrary shell access to the cloud platform.
  • Operations can be recorded for accountability and later review.
  • Post-action state can be checked instead of assuming a change succeeded.
How AI Operator works
Example controlled action
Restart web01.
Restarting the Cloud Server will interrupt the services running on it. Confirm restart of web01?
ActionCloud Server restartStateWaiting for confirmation
Shared responsibility

Cloud security also depends on what runs inside your services.

CloudBalkan operates the platform. Customers still need to secure their application code, operating-system configuration, credentials, software updates and data-recovery process.

CloudBalkan platformCustomer workload
Control Center authenticationApplication user accounts
Cloud resource permissionsGuest operating-system permissions
Platform operations and statusApplication patching and dependencies
Cloud service availabilityApplication-level resilience
Infrastructure audit contextApplication logs and security policy

Have a security question before you deploy?

Send us the requirement or security questionnaire. We will answer from the controls that actually exist rather than claiming certifications or features we do not have.

Ask a security question