> For clean Markdown of any page, append .md to the page URL. > For a complete documentation index, see https://fyno.io/docs/security/llms.txt. > For AI client integration (Claude Code, Cursor, etc.), connect to the MCP server at https://fyno.io/_mcp/server. # Security > Understand Fyno compliance guardrails and data privacy features, including reversible data masking, payload lifecycle governance, dual-control approval queues, HMAC endpoint signatures, and custom private S3/CloudFront media storage. Security is considered one of Fyno's biggest selling points since we deal with the transmission of a lot of sensitive information and Personal Identifiable Information. Therefore while implementing the **Security** features, a lot of consideration was put in, keeping **Compliance** as well as client data discretion in mind. Fyno has 5 **Security** features that can be enabled for your account: 1. [Data Masking](./security/data-masking) 2. [Data Payload Storage](./security/data-payload-storage) 3. [Secure Allowlist Endpoints](./security/secure-allowlist-endpoint) 4. [Secure Media Storage](./security/secure-media-storage) 5. [Secrets](./security/secrets) 6. [OAuth Configuration](./security/oauth-configuration) > **Note** > > Only users with 'Owner' or 'Super Admin' role can enable these security settings. Also these features are NOT AVAILABLE for Free Plan. Before you enable any of these features, it is important to understand what each one does, to ensure your use case is being covered and you are achieving the security data protection. > > **Note** > > > > These security features, when enabled, applies only to "Live" version data. > Understand Fyno compliance guardrails and data privacy features, including reversible data masking, payload lifecycle governance, dual-control approval queues, HMAC endpoint signatures, and custom private S3/CloudFront media storage. ## Docs - [Data Masking](https://fyno.io/docs/security/data-masking.md): Configure data masking to protect sensitive information in logs by automatically detecting and masking personal, financial, and other confidential data. - [Data Payload Storage](https://fyno.io/docs/security/data-payload-storage.md): Configure data payload storage settings to securely store notification payloads and control payload retention for logs and analytics. - [Secure Allowlist Endpoint](https://fyno.io/docs/security/secure-allowlist-endpoint.md): Configure secure allowlist endpoints to restrict incoming requests to verified domains and trusted sources, enhancing endpoint security and access control. - [Secure Media Storage](https://fyno.io/docs/security/secure-media-storage.md): Configure secure media storage to protect media files from unauthorized access and ensure media is served only through authenticated and controlled requests. - [Secrets](https://fyno.io/docs/security/secrets.md): Manage and securely store sensitive credentials such as API keys, tokens, and authentication secrets for use across Fyno configurations and workflows. - [OAuth Configuration](https://fyno.io/docs/security/oauth-configuration.md): Set up OAuth once in Workspace Settings and reuse it across allowlisted endpoints to authenticate API requests automatically.