Product updates

Security hardening across the platform

Per-tenant model isolation, short-lived credentials, cleaner logs, and automatic security patching strengthen how Timberline runs.

Alongside new features, the last month included work you won’t see but your security team will appreciate.

  • Tenant-separated inference. Requests to the model are authenticated per tenant, and each tenant’s model cache is kept separate.
  • Short-lived credentials. Services authenticate with automatically rotating workload identity tokens instead of long-lived stored secrets.
  • Cleaner logs. Credentials are stripped from request logs.
  • Patching at build time. Operating-system security updates are applied every time Timberline’s services are built.
  1. Governed web search

    Timberline can now search the public web when an administrator enables it, with identifying details removed from queries first.

  2. Password sign-in with multi-factor authentication

    Teams without single sign-on can now use password sign-in protected by authenticator-app MFA, account lockout, and breached-password checks.

  3. Invitation-only access and an Access panel for administrators

    Accounts now require an invitation, and administrators can manage members and invitations without any access to conversations.

See Timberline in practice.

Talk with Timberline