Legal

Privacy Policy

How we protect and manage your organization's and users' details.

Data Stewardship

We prioritize the privacy of our clients and partners. We do not sell your data. We do not use your proprietary operations data or source codes to train public models.

Compliance

As a SOC 2 Type 2 compliant vendor, our data encryption, transmission, and operational storage processes undergo third-party auditing to guarantee standard-level information safety.

Private LLM Policies

Zero data leakages to public LLM foundations.

Isolated Context Windows

API requests are marked with 'no-store' flag commands, ensuring OpenAI/Anthropic/Google do not retain prompts in cache systems.

Open Source Instances

For financial operations, we deploy isolated models directly inside private customer servers.

Database Storage Policies

Where customer logs are saved during sprint operations.

Staging Databases

Located within separate customer subnets to prevent cross-contamination.

Operational Logs

Deleted automatically 30 days after sprint validation matches.

VPC Controls

Access restricted to vetted developer IP ranges.

Encryption Benchmarks

How pipeline transactions are protected during data syncs.

TLS 1.3 in Transit

All REST API connections to accounting databases utilize TLS 1.3 protocol standards.

AES-256 at Rest

Backups and staging schemas are secured using AES-256 block cyphers.

Confidentiality Protections

We sign mutual NDAs before reviewing system architectures.

Architectural Isolation

Only developers assigned to your active pod review database schema details.

Credentials Isolation

API key keys are stored in Vault systems, preventing plain-text file storage.

Security Vetting Inquiry

If your security team requires custom compliance question forms filled, contact our compliance officer desk.

Contact Compliance Desk