TF Platform Secrets now supports tenant-based server-side encryption using service-managed keys stored in a managed KMS. Each tenant is assigned a unique key, ensuring that keys are isolated and cannot be used across tenants.
Future plans include support for customer-managed keys (CMKs), which will give tenants greater control over their encryption and key management.