Security foundations
- Role-based access controls with organisation, portfolio, and property scope
- Immutable audit events for approvals, exports, and service proofs
- Secure document storage with version history
- Controlled sharing and upload protections
- Configurable retention policies and legal hold support
- White-label domains and portals governed through verified organisation settings
- Supplier portal access and client-facing links should remain scoped, revocable, and auditable