tiredapi.co
Security

Security

Last updated 2026-05-10.

Tiredofdointm Studio uses industry-standard controls to protect your data:

Encryption

TLS 1.2+ in transit (Cloudflare-fronted, certs auto-rotated). At rest: AWS KMS-encrypted S3, EBS, and Parameter Store SecureStrings.

Access

2FA enforced on admin accounts. No SSH; remote access via EC2 Instance Connect Endpoint (audit-logged in CloudTrail). All API tokens scoped least-privilege.

Audit + Detection

CloudTrail event logging, GuardDuty threat detection, Config compliance scans, S3 BPA, EBS encryption all enabled by default. Hash-chained application audit log.

Privacy

See Privacy Policy for data handling. Bug bounty: security@tiredapi.co.