Written for IT managers who need to approve a vendor. If you need a filled security questionnaire, email security@jedru.com.
Your Jedru account is an OpenID Connect identity. Vortex, iMonitor and Craft Studio accept tokens only from it, so a cancelled subscription or removed user loses access everywhere within minutes.
A second sign-in ends the first after a prompt. Organisations can also require an authenticator-app code and restrict sign-in to their office IP range.
New browsers and PCs are fingerprinted and confirmed by a one-time email code. Administrators can see and revoke every device from the portal.
Each seat is an Ed25519-signed entitlement issued by the portal and verified by the product on every request. Keys cannot be edited, extended or forged; the private key never leaves our servers.
Web products render on our servers; browsers receive screens, not application code. The iMonitor agent is code-signed, obfuscated and bound to the hardware fingerprint of the PC it was activated on.
Encrypted in transit (TLS 1.2+) and at rest. Daily backups retained 30 days. Each organisation's data is logically isolated; exports are available on request and deleted 30 days after an account closes.
Card details never touch Jedru systems. Payments are processed by PayHere (PCI DSS Level 1, 3-D Secure). We store only the last four digits and the payment reference.
Enterprise customers can run products inside their own network with an offline, machine-bound licence file. Contact sales for details.