Shared Responsibility
Home»Shared Responsibility
Who's responsible for what
No single party controls every layer of a hosted service. BMaiKR, the infrastructure provider (HostPowr), and the customer each carry distinct responsibilities — drawn out explicitly below so nothing falls into a gap between them.
This split describes how responsibility is divided across BMaiKR's hosted infrastructure and any applicable client-delivered platform. It is not a claim that bmaikr.com itself runs every control listed — the marketing site and CMS are one specific, smaller deployment within this model.
BMaiKR
- Application security
- Infrastructure configuration within BMaiKR’s control
- Access control for BMaiKR-managed systems
- Data handling within the application layer
- Application updates and patching
- Secrets management
- Workflow and automation configuration
- External integration configuration
Infrastructure provider (HostPowr)
- Physical infrastructure and data center operations
- Underlying network and storage services within the provider’s scope
- Provider-side platform availability
Customer
- User accounts on their own systems
- Password and multi-factor authentication practices
- Access permissions granted to their own team
- Data submitted into the service
- Third-party integrations they choose to connect
- Credentials on the customer’s side of an integration
