# Encryption

Zild protects data in transit between users, services, channels, and providers, and protects persisted data in managed storage and Azure SQL.

Source: https://zild.ai/en-US/docs/security/encryption

Zild protects data in transit between users, services, channels, and providers, and protects persisted data in managed storage and Azure SQL.

## Encryption in transit

Encrypted connections protect the confidentiality and integrity of data moving between web applications, backend services, external APIs, communication channels, internal systems, and AI providers.

## Encryption at rest

Managed storage, databases, files, and backups use their configured at-rest protection. Azure SQL provides native encryption capabilities for persisted database records, while application authorization continues to control logical access.

## Secret handling

Keep API keys, tokens, and provider credentials in approved secret stores. Do not place secrets in documentation, client-side code, agent prompts, logs, or copied API examples.
