SECURITY
Security and sovereignty
VIGIL separates the Control Plane from Vigil Edge. Infrastructure credentials, raw telemetry, evidence contents, and private keys remain in the customer environment; the Control Plane operates on authorized metadata.
Product controls
- Server-enforced organization isolation and MSSP assignments.
- Authentication, roles, revocable sessions, and transactional audit.
- Approval, expiry, idempotency, and verification for response actions.
- Signed evidence packages and public verification without raw-evidence upload.
Responsible disclosure
Report potential vulnerabilities to security@vigilxdr.com. Include reproducible detail and avoid accessing data that is not yours. We do not claim regulatory certifications that have not been issued by the relevant authority.
