Security & account controls

Verified details about access to CostForge.

This page describes account and application controls that are supported by the current CostForge platform reference. For contractual, compliance or infrastructure questions not covered here, contact us directly rather than relying on assumptions about the service.

Authentication and account access

CostForge uses Supabase authentication for account sign-up, sign-in, sign-out, invitations, account recovery and password-reset workflows. Team access is managed through CostForge workspace accounts rather than shared quote documents or spreadsheets.

Roles and team administration

Workspace roles are Owner, Admin and Member. Administrators can invite users, change roles, deactivate or reactivate users and remove users. The Owner role has additional protection compared with ordinary Admin and Member roles.

Tenant-aware application data

CostForge is a multi-tenant application. The platform is designed to keep tenant-aware records separated across areas including clients, jobs, quotes, users, branding, staff roles, billing state and Xero settings.

Need security or compliance information?

Hosting location, encryption specifications, regulatory commitments, incident-response obligations and contractual data-processing terms should be confirmed from current authoritative documentation. We do not publish unverified guarantees on this marketing page.

Send security or compliance questions to info@byteflowsoftware.co.uk.