Skip to main content
Trust Center

Your cloud. Your controls.

Our agents are designed, built, and operated inside your own cloud account on GCP, AWS, or Azure. Your data never leaves your environment, and you keep the keys. Here is exactly how that works, and where our certifications honestly stand today.

Architectural guarantees

Trust by architecture, not by promise.

Runs in your account

Every agent is deployed inside your own cloud project. The compute, the storage, and the model calls all live in infrastructure you own and pay for.

Least-privilege access

We operate through scoped service accounts with only the permissions a given workflow needs. No standing admin access, no broad reach into systems we do not touch.

Full audit trail

Every action the agent takes is logged in your cloud, in your tooling. You can see what ran, when, and why, and export it for your own review at any time.

Rollback & kill-switch

Versioned deployments let you roll back instantly. A kill-switch lets you halt any agent immediately, and control of it stays on your side.

PHI stays in your cloud, never copied to us
Compliance posture

Built to the control objectives. Stated honestly.

We engineer to the SOC 2 and HIPAA control objectives and sign a Business Associate Agreement for healthcare engagements. Formal attestations are underway. Here is exactly where each one stands today.

HIPAA · Security Rule safeguards in place · BAA availableSOC 2 Type II · independent examination in progressISO 27001 · on our roadmap

We do not display badges we have not earned. Email us any time for current status, our latest report, or a signed BAA.

Security packet

Request our security packet.

Need our architecture diagrams, access model, data-handling details, and a BAA for your review? We will send the current packet and answer your security team's questions directly.