Tenant isolation
Supabase RLS policies isolate organizations, members, edge sites, nodes, telemetry events, inference requests, and API keys.
UmamiEdge should not only route workloads. It must prove tenant isolation, node identity, regional compliance, and operational accountability.
Supabase RLS policies isolate organizations, members, edge sites, nodes, telemetry events, inference requests, and API keys.
Each node uses a scoped credential for telemetry and heartbeat. Production should rotate keys and store only hashes.
Inference policies can restrict traffic by country, customer, model risk level, and private node group.
Every route decision, model invocation, admin action, and telemetry anomaly should be written to an immutable audit stream.
Routing weighs latency, uptime, available power, GPU utilization, customer tier, and failover readiness.
SOC use cases stay local where required, while suspicious node activity can trigger automatic quarantine.