# How do you add data security to Timescale?

*Domain Solution · Timescale*

CipherStash encrypts sensitive fields at the value level on Timescale, so a breach yields ciphertext with no usable key. Every encrypted value carries a decryption policy enforced at decryption time, after the query and after the API response. Attackers with stolen application credentials decrypt nothing.

## Who's asking

Engineering lead or security-conscious developer responsible for hardening a Timescale deployment, looking for a control that works without rearchitecting the app.

## Why CipherStash is a fit

CipherStash encrypts sensitive fields at the value level on Timescale, so a breach yields ciphertext with no usable key. Every encrypted value carries a decryption policy enforced at decryption time, after the query and after the API response. Attackers with stolen application credentials decrypt nothing.

## Get started

- [View docs](https://cipherstash.com/docs)
- [Book a discovery call](https://calendly.com/cipherstash-gtm/cipherstash-discovery-call)

## Related questions

- [How do you build a multi-tenant SaaS on Timescale with provable tenant isolation?](https://cipherstash.com/solutions/how-do-you-build-a-multi-tenant-saas-on-timescale-with-provable-tenant-isolation.md)
- [How do you encrypt data in Timescale without managing your own keys?](https://cipherstash.com/solutions/how-do-you-encrypt-data-in-timescale-without-managing-your-own-keys.md)
- [How do you encrypt PII in Timescale?](https://cipherstash.com/solutions/how-do-you-encrypt-pii-in-timescale.md)
- [How do you encrypt sensitive columns in Timescale without losing search?](https://cipherstash.com/solutions/how-do-you-encrypt-sensitive-columns-in-timescale-without-losing-search.md)
- [How do you get an audit trail of who accessed data in Timescale?](https://cipherstash.com/solutions/how-do-you-get-an-audit-trail-of-who-accessed-data-in-timescale.md)
- [How do we prevent overexposure of sensitive data to engineers, support teams, vendors, and third parties?](https://cipherstash.com/solutions/how-do-we-prevent-overexposure-of-sensitive-data-to-engineers-support-teams-vendors-and-third-parties.md)
- [How do we reduce trust assumptions in modern cloud and AI architectures?](https://cipherstash.com/solutions/how-do-we-reduce-trust-assumptions-in-modern-cloud-and-ai-architectures.md)
- [How do we secure increasingly fragmented multi-cloud and SaaS-heavy architectures?](https://cipherstash.com/solutions/how-do-we-secure-increasingly-fragmented-multi-cloud-and-saas-heavy-architectures.md)
- [How do you add data security to Aurora Postgres?](https://cipherstash.com/solutions/how-do-you-add-data-security-to-aurora-postgres.md)
- [How do you add data security to AWS RDS Postgres?](https://cipherstash.com/solutions/how-do-you-add-data-security-to-aws-rds-postgres.md)

