Security is a first principle, not an afterthought
Managing devices means handling sensitive access. We're designing KuchliMDM with security at the center — and we'll always describe it honestly.
KuchliMDM is currently in development. The items below describe our security principles and planned architecture. We do not claim any certifications or guarantees that do not yet exist — including SOC 2, ISO, or Apple certification — and we'll update this page as our program matures.
How we think about protecting your data
Encryption in transit
Communication between devices, admins, and the platform is designed to be encrypted in transit using industry-standard TLS.
Secure certificate & token handling
APNs certificates, enrollment tokens, and secrets are handled with care and least-privilege access in mind.
Role-based access control
Administrative permissions are planned to be scoped by role so people only access what they need.
Audit logging
Administrative and device actions are designed to be recorded in exportable audit logs.
Tenant data isolation
The architecture is being designed to keep each organization's data logically isolated.
Backup & recovery planning
Backup and recovery processes are part of the platform's ongoing architecture planning.
Building responsibly, communicating clearly
As the platform develops, we're committed to a few things when it comes to security and trust.
- We describe our security posture accurately, without overstating maturity.
- We design for least privilege and clear administrative accountability.
- We plan for auditability so actions can be traced and reviewed.
- We will pursue appropriate certifications when the platform is ready.
Be among the first to manage Apple devices with KuchliMDM.
We're building KuchliMDMnow. Request early access and we'll keep you updated as the platform takes shape.