Security
Non-custodial by design. Compliant by default.
RailOS is software infrastructure. Your funds stay in your wallets. Your data stays in your workspace.
Non-custodial by design
RailOS does not hold customer or business funds. Ever. Every transfer is initiated and signed by you in your own wallet.
No seed phrases or private keys
We do not store, request, or ever ask for your seed phrases or private keys. If a tool ever asks — it isn't RailOS.
Wallet monitoring, not custody
RailOS reads public on-chain data for the addresses you choose to track. We never gain spend authority.
Role-based access (planned)
Owner, admin, finance, and viewer roles. Granular permissions scoped per workspace.
Audit logs (planned)
Every state change captured for review by finance and security teams.
Secure authentication
Email, Google, and Apple sign-in via a hardened auth provider with session-based tokens.
Row Level Security
Workspace data is isolated at the database layer. Members of a workspace can only ever read or write data scoped to that workspace.
Compliance-first boundaries
RailOS is software infrastructure. We do not provide banking, custody, brokerage, exchange, tax, or legal services.