Security

Your data stays yours.

Every system we build is made to pass an enterprise security review: your data encrypted and kept in your accounts, access held to the few who need it, and every action the AI takes on record.

How we think about security.

Four principles sit behind every control on this page.

Secure from the first line

Security is designed in from day one, on zero-trust principles, never bolted on before launch.

No single point of failure

Network isolation, encryption and access rules each cover for the others, so no one control carries the load alone.

Tested, and tested again

Penetration tests, vulnerability scans and audits run on a schedule, and our controls change as the threats do.

Open with your reviewers

We share our documentation, complete your security questionnaires, and answer your team's questions directly.

The controls, layer by layer.

Pick a layer to see what protects your data there.

Data protection

From the moment your data arrives to the day it is deleted.

Encryption at rest
AES-256
Encryption in transit
TLS 1.3
Data residency
Set per client
Retention
On your schedule
Deletion
Secure erasure on request
Backups
Encrypted, in more than one region

Nothing the AI does goes unseen.

  • Every action on record

    Each step an agent takes is logged and timestamped in a trail that cannot be edited, so your auditors can see what it did and why.

  • A person signs off

    Anything that changes a record or reaches a customer waits for approval from the person who owns it.

  • Always available

    Systems run on hardened infrastructure across more than one region, with a 99.99% uptime commitment.

Bring your security review to us.

We'll share our documentation, complete your questionnaire, and walk your team through how we'd protect your data.