Built for Enterprise Security

Comprehensive security measures protect your brand data, API credentials, and content at every level.

Data Encryption

All data is encrypted using industry-standard protocols.

  • AES-256 encryption for data at rest
  • TLS 1.3 for all data in transit
  • Encrypted database connections
  • Encrypted backup storage

API Key Security

Your API keys are protected with multiple layers of security.

  • Keys stored in HashiCorp Vault
  • Never stored in plaintext
  • Access logged and auditable
  • Automatic key rotation available

Access Control

Granular access controls ensure the right people have the right access.

  • Role-based access control (RBAC)
  • SSO with SAML, OAuth, OIDC
  • Multi-factor authentication (MFA)
  • IP allowlisting available

Audit & Logging

Comprehensive audit trails for compliance and security monitoring.

  • Complete activity logging
  • Immutable audit trails
  • Exportable compliance reports
  • Real-time alerting available

Your Data, Your Control

We are committed to protecting your privacy and giving you control over your data.

Data Deletion

Request deletion of your data at any time. We will remove all your data from our systems within 30 days of your request.

Data Export

Export all your data in standard formats. Full portability ensures you are never locked into our platform.

Transparency

Clear policies on what data we collect and how it is used. No hidden practices or surprise data usage.

AI Data Handling

When you use AI features, your data is handled with strict privacy controls.

  • Your content is not used to train AI models
  • API requests are not logged by AI providers
  • BYO API keys give you full control
  • Enterprise agreements with AI providers

Data Residency

Choose where your data is stored to meet regulatory requirements.

  • US data centers (AWS us-east, us-west)
  • EU data centers (AWS eu-west)
  • Asia-Pacific options available
  • Data processing agreements available

Common Questions

Answers to frequently asked security and compliance questions.

Where is my data stored?
Your data is stored in AWS data centers. By default, data is stored in the US (us-east-1), but enterprise customers can choose EU or Asia-Pacific regions for data residency requirements.
How are my API keys protected?
API keys are encrypted and stored in HashiCorp Vault, a dedicated secrets management service. Keys are never stored in plaintext, and all access is logged and auditable. Keys are only decrypted in memory when needed to make API calls.
Is my content used to train AI models?
No. Your content is never used to train AI models. We have enterprise agreements with AI providers that explicitly prohibit using customer data for training. When you use BYO API keys, you have even more control over your data.
Can I get a copy of your SOC 2 report?
Yes. Our SOC 2 Type II report is available to customers and prospects under NDA. Contact our sales team to request a copy.
Do you support SSO?
Yes. We support SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC) for single sign-on. We integrate with Okta, Azure AD, Google Workspace, and other major identity providers.
How do you handle security incidents?
We have a documented incident response plan that includes detection, containment, eradication, and recovery procedures. Customers are notified of any incidents affecting their data within 72 hours.
Can you complete our security questionnaire?
Yes. We regularly complete security questionnaires and support common formats like SIG, CAIQ, and custom questionnaires. Contact our team to initiate the process.

Need More Information?

Our security team is available to answer questions, complete questionnaires, and provide documentation.

Contact Security Team