Tenant isolation
Tenant identity derives from the authenticated session, authorization is role aware, and PostgreSQL row-level security provides defense in depth.
Varajen Time extends the platform's tenant, role and audit model to enrolled Windows devices, browser attribution and telemetry ingestion.

Varajen Time connects collection, policy, coverage, review and deployment controls so teams can understand both the metric and the evidence behind it.
Tenant identity derives from the authenticated session, authorization is role aware, and PostgreSQL row-level security provides defense in depth.
Tenant-scoped enrollment, device revocation, signed installers, signed update manifests, SHA-256 verification and encrypted local queues protect the endpoint workflow.
Device identifiers and monotonic sequence numbers let accepted records be processed idempotently, reducing duplicate telemetry during retries.
Screenshots are disabled unless policy enables them, captured only in the signed-in session, protected locally, stored encrypted and accessed through tenant-scoped links.

Connection, tracking and component health remain separate. A working heartbeat with failed browser attribution is degraded, not healthy; missing telemetry remains unknown.
Customers provide legally sufficient notice, establish a lawful basis, configure retention, restrict access and follow applicable labor and privacy requirements.