You are in the context of a single organisation. The tenant boundary is enforced in the application layer here; the Postgres row-level security policies in database/schema.sql are the planned second layer and no database sits in this prototype's path yet.