See how Cloudry protects the systems it manages.
Published checks show their current status, evidence time, and freshness.
Monitoring since .
Evidence view generated .
Evidence path
How scheduled observations become the limited record published here.
- Managed systems
Checks start at the Cloudry services and infrastructure in scope.
- Normalized facts
Collectors retain allowlisted facts, not raw provider responses.
- Evaluation
Catalog rules compare facts with freshness and applicability requirements.
- Immutable history
Evidence and evaluations are recorded in append-only history.
- Public boundary
Only reviewed summaries and public control fields reach this page.
Control status ledger
Twelve public controls, grouped by operational area. Missing or stale proof stays unavailable.
Transport
| Control | Status | Evaluated | Fresh until | Evidence |
|---|---|---|---|---|
HTTPS, TLS validity, and HSTSSEC-TRANSPORT-001 | Evidence unavailable (UNKNOWN) | No public evidence summary is available yet. |
Data protection
| Control | Status | Evaluated | Fresh until | Evidence |
|---|---|---|---|---|
Database connection encryptionSEC-DATA-001 | Evidence unavailable (UNKNOWN) | No public evidence summary is available yet. |
Monitoring
| Control | Status | Evaluated | Fresh until | Evidence |
|---|---|---|---|---|
Monitoring-agent and alert coverageMON-COVERAGE-001 | Evidence unavailable (UNKNOWN) | No public evidence summary is available yet. | ||
Public endpoint healthMON-ENDPOINT-001 | Evidence unavailable (UNKNOWN) | No public evidence summary is available yet. | ||
Background worker heartbeatMON-WORKER-001 | Evidence unavailable (UNKNOWN) | No public evidence summary is available yet. |
Backup and recovery
| Control | Status | Evaluated | Fresh until | Evidence |
|---|---|---|---|---|
Managed database PITR capabilityBKP-PITR-001 | Evidence unavailable (UNKNOWN) | No public evidence summary is available yet. | ||
Database backup freshnessBKP-FRESH-001 | Evidence unavailable (UNKNOWN) | No public evidence summary is available yet. | ||
State-bearing host backupsBKP-HOST-001 | Evidence unavailable (UNKNOWN) | No public evidence summary is available yet. | ||
Restore drill currencyBKP-RESTORE-001 | Evidence unavailable (UNKNOWN) | The last evaluation is no longer current. |
Change management
| Control | Status | Evaluated | Fresh until | Evidence |
|---|---|---|---|---|
Terraform representationIAC-TERRAFORM-001 | Evidence unavailable (UNKNOWN) | No public evidence summary is available yet. | ||
Image provenance and SBOM currencyIAC-SBOM-001 | Evidence unavailable (UNKNOWN) | No public evidence summary is available yet. | ||
Vulnerability scan currencyIAC-VULN-001 | Evidence unavailable (UNKNOWN) | No public evidence summary is available yet. |
Backup and recovery proof
Backup capability, freshness, host coverage, and restore-drill currency are evaluated separately.
- Managed database PITR capabilityEvidence unavailable (UNKNOWN)
BKP-PITR-001No public evidence summary is available yet.
- Database backup freshnessEvidence unavailable (UNKNOWN)
BKP-FRESH-001No public evidence summary is available yet.
- State-bearing host backupsEvidence unavailable (UNKNOWN)
BKP-HOST-001No public evidence summary is available yet.
- Restore drill currencyEvidence unavailable (UNKNOWN)
BKP-RESTORE-001No public evidence summary is available yet.
Ninety-day status history
Only real evaluation dates are shown. The page does not invent earlier coverage.
Collecting history since .
- Evidence unavailable (UNKNOWN)Transport: UNKNOWN · Data protection: UNKNOWN · Monitoring: UNKNOWN · Backup and recovery: UNKNOWN · Change management: UNKNOWN
Incident history
Only reviewed public summaries appear. Internal incident details remain private.
No reviewed public incident update is available.
Framework mappings
Published criteria are linked to the public controls they describe. Mappings never change a control’s status.
NIST CSF 2.05 mapped criteria
- GV.RR-02Roles, responsibilities, and authoritiesIAC-TERRAFORM-001
- PR.DS-02Data in transit is protectedSEC-DATA-001, SEC-TRANSPORT-001
- DE.CM-01Networks and services are monitoredMON-COVERAGE-001, MON-ENDPOINT-001, MON-WORKER-001
- ID.RA-01Vulnerabilities are identifiedIAC-SBOM-001, IAC-VULN-001
- RC.RP-03Recovery plans are verifiedBKP-FRESH-001, BKP-HOST-001, BKP-PITR-001, BKP-RESTORE-001
SOC 2 20174 mapped criteria
- CC6.1Logical access securitySEC-DATA-001, SEC-TRANSPORT-001
- CC7.2System monitoringIAC-VULN-001, MON-COVERAGE-001, MON-ENDPOINT-001, MON-WORKER-001
- CC8.1Change managementIAC-SBOM-001, IAC-TERRAFORM-001
- A1.2Recovery and backupBKP-FRESH-001, BKP-HOST-001, BKP-PITR-001, BKP-RESTORE-001
Framework mappings show how Cloudry controls relate to published criteria. They are not independent certifications.
Security practices
These practices describe Cloudry’s managed platform and the controls it can help customers document.
- Infrastructure definitions
Durable DigitalOcean infrastructure is defined through Terraform.
- Operational records
Operational changes are recorded and reconciled.
- Customer controls
Cloudry can help implement and document site-level controls that support your organization’s security requirements.
Contact security
Report a security concern or ask how a Cloudry control applies to your project.