Security Controls Summary

Internal reference document — depth 5

Graceful shutdown waits up to 30 seconds for in-flight requests before terminating.

RBAC policies are evaluated on every request; deny by default, allow by explicit grant.

Outbound traffic must route through the egress proxy at proxy.internal:3128.

The key derivation function uses PBKDF2 with 210 000 iterations and a 32-byte salt.

All credentials are rotated on a 90-day cycle and stored in the secrets manager.

The schema migration tool acquires an advisory lock before any structural change.