Security and Trust
Securing AI for enterprises starts with our own house. This is how we protect your data, your workloads, and your trust.
How we protect it
- Encryption everywhereCustomer data is encrypted at rest with AES-256 and in transit with TLS 1.2+. Secrets live in Google Cloud Secret Manager.
- Built on Google CloudWe run on GCP in isolated, egress-controlled networks, inheriting Google Cloud's physical and network security.
- Identity and accessLeast-privilege access, Okta SSO with MFA internally, and Auth0 securing authentication in the product.
- Monitoring and loggingInfrastructure and application activity is centrally logged and monitored around the clock.
- Secure developmentEvery change is peer-reviewed and scanned automatically, with independent penetration tests on a regular basis.
- Data privacyTenants are logically isolated, employee access is minimal and logged, and data is retained only as long as needed.
Certifications and legal documents
Our current attestations, security documentation, and legal documents (Privacy Policy, DPA, and subprocessors) are kept up to date in the Unclave Trust Center.
Visit the Trust CenterFound something? Tell us.
We take the security of our platform and our customers seriously. If you have discovered a vulnerability, we want to hear from you, and we'll respond as quickly as possible.