Trust Center
Security and compliance, in the open.
Everything a finance buyer's diligence checklist asks for, in one place — our SOC 2 posture, how we handle data, and how to reach security.
SOC 2 — in progress, honestly stated.
We report our status exactly, because a finance buyer can tell the difference between a badge and the truth.
SOC 2 status
A SOC 2 Type I audit is engaged with Prescient Assurance; fieldwork is scheduled and the report is targeted for mid-July 2026 at the earliest. Initial scope covers the Security and Confidentiality Trust Service Criteria across our Managed and Self-Hosted deployment modes. Type II observation begins immediately after.
Where your data lives — and doesn't.
The architecture is the control: raw prompts and responses never leave your perimeter.
Raw payload stays in your perimeter
Per-customer isolation, every mode
Encryption at rest
Tamper-evident audit trail
Security, privacy, and legal.
Security
Report a concern
Privacy
DPA & data requests
Frameworks
Control coverage
Need our security package?
Live control status and NDA-gated reports live in our Trust Center. Design partners also get source access and a direct line for security review.