# tenant data protection

A security concept for protecting an organization's data within its tenant boundary in multi-tenant computing systems.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## What's new in CYPEX v2.0.0: tenancy moves from the query to the catalog

DevFeed: [What's new in CYPEX v2.0.0: tenancy moves from the query to the catalog](<https://devfeed.tech/articles/what-s-new-in-cypex-v2-0-0-tenancy-moves-from-the-query-to-the-catalog-26241.md>)

Original publisher: [Read original article](<https://www.cybertec-postgresql.com/en/whats-new-in-cypex-v2-0-0-tenancy-moves-from-the-query-to-the-catalog/>)

Author: Svitlana Lytvynenko

Published: 2026-09-15T06:06:05Z

Content type: article

Language: en

Sources: [CYBERTEC PostgreSQL | Services & Support](<https://devfeed.tech/sources/cybertec-postgresql-services-support.md>)

Topics: [PostgreSQL](<https://devfeed.tech/topics/postgresql.md>), [tenant data protection](<https://devfeed.tech/topics/tenant-data-protection.md>), [Security](<https://devfeed.tech/topics/security.md>), [Database](<https://devfeed.tech/topics/database.md>)

Tags: [cypex](<https://devfeed.tech/tags/cypex.md>), [data-protection](<https://devfeed.tech/tags/data-protection.md>), [database](<https://devfeed.tech/tags/database.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [news](<https://devfeed.tech/tags/news.md>), [postgresql](<https://devfeed.tech/tags/postgresql.md>), [product](<https://devfeed.tech/tags/product.md>), [schema](<https://devfeed.tech/tags/schema.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

CYPEX 2.0.0 moves tenant isolation from application-level query filters into PostgreSQL row-level security policies stored in the database catalog. The policies use JWT claims to apply organization-specific access rules to every connection and query.

### Source excerpt

This blog highlights the details of CYPEX 2.0, with each feature being explained in detail. Read to know more. The post What's new in CYPEX v2.0.0: tenancy moves from the query to the catalog appeared first on CYBERTEC PostgreSQL | Services & Support.

## CORTO's billion-scale legal semantic search with Aurora PostgreSQL pgvector

DevFeed: [CORTO's billion-scale legal semantic search with Aurora PostgreSQL pgvector](<https://devfeed.tech/articles/corto-s-billion-scale-legal-semantic-search-with-aurora-postgresql-pgvector-4697.md>)

Original publisher: [Read original article](<https://aws.amazon.com/blogs/database/cortos-billion-scale-legal-semantic-search-with-aurora-postgresql-pgvector/>)

Author: Anisa Dean

Published: 2026-08-26T16:40:00Z

Content type: article

Language: en

Sources: [AWS Database Blog](<https://devfeed.tech/sources/aws-database-blog.md>)

Topics: [AI search](<https://devfeed.tech/topics/ai-search.md>), [tenant data protection](<https://devfeed.tech/topics/tenant-data-protection.md>)

Tags: [advanced-300](<https://devfeed.tech/tags/advanced-300.md>), [ai](<https://devfeed.tech/tags/ai.md>), [amazon-aurora](<https://devfeed.tech/tags/amazon-aurora.md>), [architecture](<https://devfeed.tech/tags/architecture.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [customer-solutions](<https://devfeed.tech/tags/customer-solutions.md>), [embedding](<https://devfeed.tech/tags/embedding.md>), [postgresql](<https://devfeed.tech/tags/postgresql.md>), [postgresql-compatible](<https://devfeed.tech/tags/postgresql-compatible.md>), [production](<https://devfeed.tech/tags/production.md>), [scale](<https://devfeed.tech/tags/scale.md>), [search](<https://devfeed.tech/tags/search.md>)

### AI overview

CORTO describes scaling legal semantic search on Amazon Aurora PostgreSQL with pgvector for billions of documents and vectors. The article focuses on embedding choices, multi-tenant isolation, cost efficiency, and sub-second query performance.

### Source excerpt

How CORTO scaled Amazon Aurora PostgreSQL with pgvector to 7.6 billion vectors and 2.5 billion documents in production, delivering sub-second legal search for 10,000+ law firms at 75% lower storage cost.

## Essential legal requirements for websites and how to meet them

DevFeed: [Essential legal requirements for websites and how to meet them](<https://devfeed.tech/articles/essential-legal-requirements-for-websites-and-how-to-meet-them-9219.md>)

Original publisher: [Read original article](<https://webflowmarketingmain.com/blog/legal-requirements-for-websites>)

Author: Webflow Team

Published: 2026-08-07T00:00:00Z

Content type: article

Language: en

Sources: [Webflow Blog](<https://devfeed.tech/sources/webflow-blog.md>)

Topics: [web design](<https://devfeed.tech/topics/web-design.md>), [Security, Privacy and Abuse Prevention](<https://devfeed.tech/topics/security-privacy-and-abuse-prevention.md>), [tenant data protection](<https://devfeed.tech/topics/tenant-data-protection.md>), [data](<https://devfeed.tech/topics/data.md>), [Software as a service](<https://devfeed.tech/topics/saas.md>)

Tags: [article](<https://devfeed.tech/tags/article.md>), [b2b](<https://devfeed.tech/tags/b2b.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [enterprise](<https://devfeed.tech/tags/enterprise.md>), [legal](<https://devfeed.tech/tags/legal.md>), [privacy](<https://devfeed.tech/tags/privacy.md>), [strategy](<https://devfeed.tech/tags/strategy.md>), [web-design](<https://devfeed.tech/tags/web-design.md>)

### AI overview

This article explains how website legal requirements vary by site type, audience, industry, and publication location. It introduces privacy, data protection, accessibility, and jurisdiction-specific compliance considerations, including CCPA, GDPR, and HIPAA.

### Source excerpt

Learn how to navigate legal requirements for websites, which ones apply to your type of site, and what you'll need to stay ready for future legal changes.

## Expanding data residency access to business customers worldwide

DevFeed: [Expanding data residency access to business customers worldwide](<https://devfeed.tech/articles/expanding-data-residency-access-to-business-customers-worldwide-6399.md>)

Original publisher: [Read original article](<https://openai.com/index/expanding-data-residency-access-to-business-customers-worldwide>)

Published: 2025-11-25T22:00:00Z

Content type: article

Language: en

Sources: [OpenAI News](<https://devfeed.tech/sources/openai-news.md>)

Topics: [OpenAI](<https://devfeed.tech/topics/openai.md>), [ChatGPT](<https://devfeed.tech/topics/chatgpt.md>), [tenant data protection](<https://devfeed.tech/topics/tenant-data-protection.md>), [Claude](<https://devfeed.tech/topics/claude.md>), [Encryption](<https://devfeed.tech/topics/encryption.md>), [TLS (Transport Layer Security)](<https://devfeed.tech/topics/tls.md>)

Tags: [api-platform](<https://devfeed.tech/tags/api-platform.md>), [chatgpt](<https://devfeed.tech/tags/chatgpt.md>), [data-privacy](<https://devfeed.tech/tags/data-privacy.md>), [data-protection](<https://devfeed.tech/tags/data-protection.md>), [encryption](<https://devfeed.tech/tags/encryption.md>), [global](<https://devfeed.tech/tags/global.md>), [openai](<https://devfeed.tech/tags/openai.md>), [product](<https://devfeed.tech/tags/product.md>), [tls](<https://devfeed.tech/tags/tls.md>)

### AI overview

OpenAI is expanding data residency for eligible ChatGPT Enterprise, ChatGPT Edu, and API Platform customers worldwide. Customers in supported regions can store customer content at rest in-region, while approved API Platform customers can route project requests in-region without storing model requests and responses at rest on OpenAI's servers.

### Source excerpt

OpenAI expands data residency for ChatGPT Enterprise, ChatGPT Edu, and the API Platform, enabling eligible customers to store data at rest in-region.

## Introducing external backups on ClickHouse Cloud

DevFeed: [Introducing external backups on ClickHouse Cloud](<https://devfeed.tech/articles/introducing-external-backups-on-clickhouse-cloud-5330.md>)

Original publisher: [Read original article](<https://clickhouse.com/blog/introducing-external-backups-on-clickhouse-cloud>)

Author: Aashish Kohli & Garrett Thomas

Published: 2025-10-14T21:44:54Z

Content type: tutorial

Language: en

Sources: [ClickHouse Blog](<https://devfeed.tech/sources/clickhouse-blog.md>)

Topics: [Amazon S3](<https://devfeed.tech/topics/amazon-s3.md>), [AWS IAM](<https://devfeed.tech/topics/aws-iam.md>), [tenant data protection](<https://devfeed.tech/topics/tenant-data-protection.md>)

Tags: [authentication](<https://devfeed.tech/tags/authentication.md>), [aws](<https://devfeed.tech/tags/aws.md>), [azure](<https://devfeed.tech/tags/azure.md>), [clickhouse](<https://devfeed.tech/tags/clickhouse.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [external](<https://devfeed.tech/tags/external.md>), [feature](<https://devfeed.tech/tags/feature.md>), [gcp](<https://devfeed.tech/tags/gcp.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [iam](<https://devfeed.tech/tags/iam.md>), [json](<https://devfeed.tech/tags/json.md>), [s3](<https://devfeed.tech/tags/s3.md>), [storage](<https://devfeed.tech/tags/storage.md>)

### AI overview

ClickHouse Cloud introduces external backups, allowing users to export backups to storage on the same cloud provider. The article outlines AWS S3 setup using an IAM role and permissions policy.

### Source excerpt

ClickHouse Cloud is launching external backups, letting you export full, daily backups to your own storage on the same cloud provider (AWS/GCP/Azure) for complete control over retention, region placement, cold storage, and costs.

## Smarter Pod Scheduling with MatchLabelKeys in Pod Affinity

DevFeed: [Smarter Pod Scheduling with MatchLabelKeys in Pod Affinity](<https://devfeed.tech/articles/smarter-pod-scheduling-with-matchlabelkeys-in-pod-affinity-65.md>)

Original publisher: [Read original article](<https://blog.abhimanyu-saharan.com/posts/smarter-pod-scheduling-with-matchlabelkeys-in-pod-affinity>)

Author: Abhimanyu Saharan

Published: 2025-06-20T00:00:00Z

Content type: tutorial

Language: en

Sources: [Abhimanyu Saharan](<https://devfeed.tech/sources/abhimanyu-s-blog.md>)

Topics: [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [tenant data protection](<https://devfeed.tech/topics/tenant-data-protection.md>)

Tags: [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [kubernetes-v1-33](<https://devfeed.tech/tags/kubernetes-v1-33.md>)

### AI overview

This article explains how Kubernetes matchLabelKeys and mismatchLabelKeys enable dynamic pod affinity for safer rollouts and tenant isolation.

### Source excerpt

Enhance Kubernetes pod scheduling with dynamic affinity using matchLabelKeys and mismatchLabelKeys for safer rollouts and tenant isolation.

## Bugbounty and Pentests at Neon

DevFeed: [Bugbounty and Pentests at Neon](<https://devfeed.tech/articles/bugbounty-and-pentests-at-neon-5064.md>)

Original publisher: [Read original article](<https://neon.com/blog/bugbounty-and-pentests-at-neon>)

Author: Busra Demir

Published: 2024-11-25T16:43:38Z

Content type: article

Language: en

Sources: [Blog -- Neon Docs](<https://devfeed.tech/sources/blog-neon-docs.md>)

Topics: [Bug Bounty](<https://devfeed.tech/topics/bugbounty.md>), [Security](<https://devfeed.tech/topics/security.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Serverless](<https://devfeed.tech/topics/serverless.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [Database](<https://devfeed.tech/topics/database.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [tenant data protection](<https://devfeed.tech/topics/tenant-data-protection.md>), [API](<https://devfeed.tech/topics/api.md>)

Tags: [api-security](<https://devfeed.tech/tags/api-security.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [bounty](<https://devfeed.tech/tags/bounty.md>), [bug-bounty](<https://devfeed.tech/tags/bug-bounty.md>), [company](<https://devfeed.tech/tags/company.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [data-protection](<https://devfeed.tech/tags/data-protection.md>), [launch](<https://devfeed.tech/tags/launch.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [partnership](<https://devfeed.tech/tags/partnership.md>), [platform](<https://devfeed.tech/tags/platform.md>), [privacy](<https://devfeed.tech/tags/privacy.md>), [production](<https://devfeed.tech/tags/production.md>), [security](<https://devfeed.tech/tags/security.md>), [serverless](<https://devfeed.tech/tags/serverless.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

Neon announces a private Bug Bounty Program in partnership with HackerOne and describes three penetration tests that identified and resolved 58 vulnerabilities. The program covers authentication, data protection, API security, production, and staging environments, with rewards based on severity and defined response targets.

### Source excerpt

At Neon, security is at the core of everything we do. Our serverless platform was built with a vision for innovation, but we also know that a commitment to security is paramount. That's why we're excited to announce the launch of our Neon's Bug Bounty Program in partnership with...

## Space secrets security update

DevFeed: [Space secrets security update](<https://devfeed.tech/articles/space-secrets-security-update-7487.md>)

Original publisher: [Read original article](<https://huggingface.co/blog/space-secrets-disclosure>)

Author: system

Published: 2024-05-31T00:00:00Z

Content type: news

Language: en

Sources: [Hugging Face - Blog](<https://devfeed.tech/sources/hugging-face-blog.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [incident](<https://devfeed.tech/topics/incident.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [spaces](<https://devfeed.tech/topics/spaces.md>), [tenant data protection](<https://devfeed.tech/topics/tenant-data-protection.md>)

Tags: [audit](<https://devfeed.tech/tags/audit.md>), [authorization](<https://devfeed.tech/tags/authorization.md>), [data-protection](<https://devfeed.tech/tags/data-protection.md>), [incident](<https://devfeed.tech/tags/incident.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [kms](<https://devfeed.tech/tags/kms.md>), [secrets](<https://devfeed.tech/tags/secrets.md>), [security](<https://devfeed.tech/tags/security.md>), [space](<https://devfeed.tech/tags/space.md>), [tokens](<https://devfeed.tech/tags/tokens.md>)

### AI overview

Hugging Face reports unauthorized access involving secrets on its Spaces platform and suspects that some Spaces secrets may have been accessed. It revoked a number of HF tokens, recommended refreshing keys and tokens, and encouraged users to use fine-grained access tokens. The company also described security improvements including removing organization tokens, adding KMS for Spaces secrets, strengthening leaked-token detection and invalidation, and planning to deprecate classic read and write tokens.

### Source excerpt

We're on a journey to advance and democratize artificial intelligence through open source and open science.

## How OpusFlow achieves tenant isolation in Postgres without managing servers

DevFeed: [How OpusFlow achieves tenant isolation in Postgres without managing servers](<https://devfeed.tech/articles/how-opusflow-achieves-tenant-isolation-in-postgres-without-managing-servers-5355.md>)

Original publisher: [Read original article](<https://neon.com/blog/how-opusflow-achieves-tenant-isolation-in-postgres-without-managing-servers>)

Author: Carlota Soto

Published: 2024-02-22T17:28:50Z

Content type: article

Language: en

Sources: [Blog -- Neon Docs](<https://devfeed.tech/sources/blog-neon-docs.md>)

Topics: [Per-user Database](<https://devfeed.tech/topics/per-user-database.md>), [tenant data protection](<https://devfeed.tech/topics/tenant-data-protection.md>), [Amazon RDS](<https://devfeed.tech/topics/amazon-rds.md>), [Multitenancy](<https://devfeed.tech/topics/multitenancy.md>), [Encryption](<https://devfeed.tech/topics/encryption.md>), [DevOps](<https://devfeed.tech/topics/devops.md>), [Databases](<https://devfeed.tech/topics/databases.md>)

Tags: [amazon-rds](<https://devfeed.tech/tags/amazon-rds.md>), [architecture](<https://devfeed.tech/tags/architecture.md>), [business](<https://devfeed.tech/tags/business.md>), [case-studies](<https://devfeed.tech/tags/case-studies.md>), [customers](<https://devfeed.tech/tags/customers.md>), [data](<https://devfeed.tech/tags/data.md>), [database](<https://devfeed.tech/tags/database.md>), [devops](<https://devfeed.tech/tags/devops.md>), [encryption](<https://devfeed.tech/tags/encryption.md>), [energy](<https://devfeed.tech/tags/energy.md>), [postgres](<https://devfeed.tech/tags/postgres.md>)

### AI overview

The article describes how OpusFlow, an ERP tool for sustainable energy installers, addresses sensitive European customer data through a one-database-per-customer architecture in Postgres. It explains that this design improves tenant isolation, supports separate encryption keys, independent scaling, customer-specific restores, and separate upgrade schedules. The article contrasts this approach with Amazon RDS deployments, which either allow resource contention in a shared instance or create substantial operational and cost overhead when each database uses a separate instance.

### Source excerpt

"Our customers require their data to live in an isolated database, but implementing this in RDS was cumbersome and expensive. We switched over to Neon to reduce costs and operational overhead" Joey Teunissen, CTO at OpusFlow The demand for solar panels and sustainable energy inst...