Passwords and network features are anchored around native apps and secure client flows.
Security
Security should feel visible, credible, and easy to understand.
IdentityProtect is being built around strong authentication, secure applications, and privacy-conscious handling of sensitive information.
Email verification, MFA, and account security settings are part of the core website flow.
Web vault access requires a dedicated unlock flow and stronger user intent.
The public site is fronted through CloudFront and routed internally through the load balancer.
Trust Model
We should explain how protection works without sounding like engineering notes.
This page can become the customer-facing trust surface for encryption, account security, app downloads, and what different parts of the product are responsible for.
Clear security settings and notification controls for the account itself.
Vault access should feel deliberate rather than ambient in the browser.
CloudFront, ALB, and private ECS networking reduce unnecessary public exposure.