Security & Compliance

Your data security is our top priority. Learn about the measures we take to keep your information safe.

Encryption at Rest & In Transit

All data is encrypted using AES-256 at rest and TLS 1.3 in transit. Your information is protected at every step.

SOC 2 Compliant Infrastructure

We host on SOC 2 compliant cloud infrastructure with regular third-party security audits.

Role-Based Access Control

Granular access controls ensure team members only see the data they need. Admin controls for full visibility.

Data Isolation

Each customer's data is logically isolated. Your product knowledge and CRM data are never shared or mixed.

SSO & MFA Support

Enterprise-grade authentication with Single Sign-On (SAML 2.0) and Multi-Factor Authentication support.

Regular Security Audits

We conduct regular penetration testing and vulnerability assessments to stay ahead of threats.

Certifications & Compliance

SOC 2 Type II

Compliant

GDPR

Compliant

ISO 27001

In Progress

HIPAA

Available for Enterprise

How We Handle Your Data

Document Storage

Your uploaded documents are processed, encrypted, and stored securely. We extract knowledge from them but never share raw documents with other customers.

CRM Data

CRM data is accessed via secure API connections with minimal required permissions. We cache only what's needed for fast responses and never store sensitive CRM data longer than necessary.

AI Processing

Your data is never used to train our AI models. Queries and responses are processed in isolated environments. We use enterprise-grade AI providers with strict data handling agreements.

Data Retention & Deletion

You own your data. When you delete documents or cancel your account, all associated data is permanently removed from our systems within 30 days.