
BrandOps9 document
Security
Last updated June 5, 2026
BrandOps9 is designed as a multi-tenant product where workspace isolation, auditability and access control are core requirements.
Tenant isolation
Brands, campaigns, assets, schedules, integrations and credit balances are scoped to authenticated users and workspaces. Shared workspace access is explicit and revocable.
Authentication
Users can sign in with Google OAuth or email and password. Password accounts are stored using secure hashing rather than plain-text storage.
Roles and restrictions
Workspace owners can manage brand details and integrations. Shared users can work on campaigns and schedules within the permissions granted to them.
Audit logging
Security-sensitive actions, admin actions, campaign activity and platform events are logged to support investigation and operational oversight.
Operational visibility
The admin portal exposes user activity, security events, system health, scheduled jobs, usage and disk utilization so operational issues can be found early.