The core remains in the defined infrastructure.
The console and database do not depend on a mandatory public SaaS for essential operation.
We explain what Sentinel communicates, how it protects accesses and secrets, what data it retains and where the responsibilities of the platform end.
The console and database do not depend on a mandatory public SaaS for essential operation.
Agent, users and operations use separate controls, suitable for the type of communication.
Backups, human monitoring and SLAs are not implicit: they apply only when stated in the offer.
Data flow
The agent applies the local defences and sends the necessary information to the central core for fleet management.
The content and detail of the events depend on the modules and configuration. Paths, logs, retention periods and integrations are defined in the deployment.
Data processed
Server ID, hostname, operating system, agent version, declared capabilities and connection status.
Type of event, date, server, origin, rule, outcome and technical details provided by the configured module.
Console accounts, role, status of the second factor and trace of administrative operations.
Tokens and technical credentials strictly necessary for optional channels configured in the deployment.
Communications and secrets
The gRPC link between agent and core uses mTLS certificates. Sentinel stores application secrets in a vault with AES-256-GCM with its primary key kept outside the database.
The presence of a control in the software does not replace the configuration: certificates, keys and permissions are checked during deployment.
Access to the console
Passwords are verified via bcrypt hash. Authentication cookies are HttpOnly, SameSite and Secure on HTTPS requests.
The second step can be enabled for accounts and uses a temporary session separate from the fully authenticated session.
The roles separate consultation, operational activities and administration; controls are also applied by the APIs.
Session operations require a valid CSRF token and login rate limiting restricts repeated attempts.
Audit and retention
The audit log combines actor, action, resource, origin, outcome and date. Normal application functions cannot rewrite an already recorded entry.
The values can be changed in deployment. The contract and technical requirements prevail over the defaults.
Updates
The agent update process includes checks before and after replacement.
The manifest is rejected if the signature of the checksum is invalid.
The downloaded bytes must match the declared fingerprint.
The distribution may start from a limited group before extending to the fleet.
The previous release is temporarily preserved for restoration if the health check fails.
Operational boundaries
The temporary backup used during the agent update is not an infrastructure backup. Backups, replication and disaster recovery depend on the services purchased and deployment.
Responsible disclosure
Send a technical description to security@gtechgroup.it, indicating component, version, impact and steps to reproduce. Avoid destructive tests, access to third-party data and publication before coordination.
Frequently asked questions
In the self-hosted core defined for the customer. Location, backup and access depend on the deployment and infrastructure services purchased.
Agent-server communications use mTLS. Application secrets can be encrypted with AES-256-GCM and database-separated key.
It cannot be rewritten by the normal application functions, but it can be deleted when the configured retention period expires.
Not automatically. The infrastructure backup is distinct from Sentinel and only applies when included in the server service, VPS, hosting or offer.
No, except for a specific agreement. Automation works continuously; human monitoring, communication channels and response times follow the contract or any SLA.
Write to security@gtechgroup.it. The contact is also published in the domain's standard security.txt file.
We confirm controls, retention, responsibilities and infrastructure services prior to activation.