Encryption
The verified web configuration includes HTTP Strict Transport Security withmax-age=63072000; includeSubDomains; preloadand an upgrade-insecure-requests directive. These browser-facing controls tell supported browsers to prefer secure requests and remember the HTTPS policy.
Current boundary. This repository does not establish a specific encryption-at-rest algorithm, key-management practice, provider-level encryption commitment, or end-to-end encryption claim. It does not make a claim here about AES, a particular TLS version, or database-at-rest encryption.