Workspace separation
Morfync is multi-tenant. Each client operates in its own workspace with its own users, records, configuration, and access rules. Data access is scoped to the workspace a user belongs to.
Security
Morfync is designed so that each client's data stays inside its own workspace and each user only reaches what their role allows.
Controls in place
Morfync is multi-tenant. Each client operates in its own workspace with its own users, records, configuration, and access rules. Data access is scoped to the workspace a user belongs to.
Users are assigned roles within their workspace, and roles determine what can be viewed and changed. Roles are stored and enforced server-side, not in the browser.
Application areas require an authenticated session. Requests are authorised on the server for every protected operation, not only hidden in the interface.
Accounts sign in through the Morfync application at app.morfync.com. Credentials are never stored in plain text and sessions are managed by the authentication layer.
Morfync runs on managed cloud infrastructure with encrypted transport (HTTPS/TLS) between clients and the application, and managed database services with encryption at rest.
Records carry an activity history, so changes and interactions on a relationship remain visible to authorised users in the workspace.
Shared responsibility
Security in a CRM is a partnership. This page is maintained by Enterocity to answer common security questions about Morfync; it is not an independent audit or certification.
Morfync is an early-stage product operated by Enterocity, and we would rather be precise than impressive.
If you believe you have found a vulnerability or a data issue in Morfync, contact Enterocity directly and give us the detail needed to reproduce it. We will acknowledge the report and keep you informed while we investigate.
Send us your questionnaire or your questions and we will answer them directly, including what is and is not in place today.