Security & trust
Our customers assess controls for a living, so this page is written for that reader: what protects your clients' data, what you can verify yourself, and what we deliberately don't claim.
How it's protected
Sign-in with multi-factor authentication, role-based permissions and per-feature gating, so people reach the parts of an engagement their role requires and nothing more. Auditees are scoped tighter still: an auditee sees the tasks assigned to them, not the control register, not other findings, not the rest of the engagement.
Every client workspace is sealed off from the others, enforced at the database layer rather than hidden behind a filter in the interface. One client's users can never reach another's data, and the AI honours the same boundary — questions asked of your evidence are answered from the workspace you're in, never from another client's documents.
Every change is logged with who made it and when, recording before-and-after values rather than a vague 'updated'. Approvals are append-only: which version was approved, on what evidence, by which reviewer, at what time. It is the record you would ask for as an auditor, because it is the record we would have to produce.
The platform is hardened through repeated security and readiness reviews on every release. We build to the controls we help you audit — not because a certificate requires it, but because our customers assess systems like this for a living and will look.
Your data, your control
Straight answers
Certification against a standard is issued by an accredited certification body after an independent audit — it is never something a vendor can assert on its own website. So you will not find a badge here that we have not earned. If your vendor-review process needs our current security posture in writing, ask us and we will send what we have.
Related: answers for the sceptical auditor · how firms keep clients separated