| Name | Modified | Size | Downloads / Week |
|---|---|---|---|
| Parent folder | |||
| README.md | 2026-04-27 | 1.8 kB | |
| v1.0.0 -- Production-Ready _ Compliance-Complete source code.tar.gz | 2026-04-27 | 1.0 MB | |
| v1.0.0 -- Production-Ready _ Compliance-Complete source code.zip | 2026-04-27 | 1.1 MB | |
| Totals: 3 Items | 2.1 MB | 0 | |
๐ v1.0.0 โ Production-Ready Release
This is the first production-stable release of OpenWhistle. All core HinSchG compliance requirements are met.
Highlights
Security & Privacy
- Envelope encryption at rest โ per-report DEK wrapped with HKDF-SHA256 MEK derived from
SECRET_KEY; Fernet AES-256; admin UI transparently decrypts; pre-encryption rows backward-compatible - Data retention policy โ
RETENTION_ENABLED=true+RETENTION_DAYS(default 1095 = 3 years); daily job at 03:00 UTC; GDPR Art. 5(1)(e) + HinSchG ยง12 Abs. 3; immutablereport.auto_deletedaudit log entries; admin page at/admin/retention
Multi-Tenancy
- Multi-tenancy โ
MULTI_TENANCY_ENABLED=true;Organisationmodel;org_idFK on all data tables; superadmin role manages organisations at/admin/organisations; default org auto-created at setup - Superadmin role โ
superadmin>admin>case_managerhierarchy;require_superadminguards org management
Compliance Tools
- Telephone reporting channel guide โ
/admin/telephone-channel; HinSchG ยง16 checklist, ยง10 recording prohibition notice, legal references - SOC 2 / ISO 27001 documentation โ security policy template and DPA template in
docs/security/
Database Migrations
- Migration
012: createsorganisationstable; addsorg_idFK andencrypted_dekcolumn to all data-bearing tables; addssuperadmintoadminroleenum - Migration
013: data migration โ backfillsorg_id, encrypts all existing report descriptions and message bodies - Migration
014: per-org composite unique constraints onreport_categories.slugandlocations.code - Migration
015: revertsadmin_users.org_idto nullable for superadmin accounts
Full Changelog: https://github.com/openwhistle/OpenWhistle/compare/v0.5.0...v1.0.0