Security

Security is a first principle, not an afterthought

Managing devices means handling sensitive access. We're designing KuchliMDM with security at the center — and we'll always describe it honestly.

A note on claims

KuchliMDM is currently in development. The items below describe our security principles and planned architecture. We do not claim any certifications or guarantees that do not yet exist — including SOC 2, ISO, or Apple certification — and we'll update this page as our program matures.

Principles & planned architecture

How we think about protecting your data

Encryption in transit

Communication between devices, admins, and the platform is designed to be encrypted in transit using industry-standard TLS.

Secure certificate & token handling

APNs certificates, enrollment tokens, and secrets are handled with care and least-privilege access in mind.

Role-based access control

Administrative permissions are planned to be scoped by role so people only access what they need.

Audit logging

Administrative and device actions are designed to be recorded in exportable audit logs.

Tenant data isolation

The architecture is being designed to keep each organization's data logically isolated.

Backup & recovery planning

Backup and recovery processes are part of the platform's ongoing architecture planning.

Our commitments

Building responsibly, communicating clearly

As the platform develops, we're committed to a few things when it comes to security and trust.

  • We describe our security posture accurately, without overstating maturity.
  • We design for least privilege and clear administrative accountability.
  • We plan for auditability so actions can be traced and reviewed.
  • We will pursue appropriate certifications when the platform is ready.
In development · Early access coming soon

Be among the first to manage Apple devices with KuchliMDM.

We're building KuchliMDMnow. Request early access and we'll keep you updated as the platform takes shape.