📄️ Application Security Guidelines
These guidelines define the mandatory application security baseline for every developer and DevOps engineer at Sadeem Informatique. They are written in the same spirit as the security controls enforced by SATIM for payment integrations: explicit, verifiable, and non-negotiable on production systems.
📄️ VPS & Server Security Guidelines
These guidelines define the mandatory infrastructure security baseline for every VPS, server, CI/CD tool, and object-storage service operated by Sadeem Informatique. They complement the Application Security Guidelines — application code can be perfectly secure and still be compromised through an unhardened server, an unencrypted internal tool, or a public storage bucket.