Security by design
Tenant isolation, Vault credentials, HIT approval, E2E encryption, GDPR.
Security & compliance
Security architecture — tenant isolation, Vault credentials, HIT approval gates and GDPR-aligned data handling.
Tenant isolation
Each tenant has isolated Brain/RAG storage, isolated browser contexts, and tenant-scoped credentials. Your data never mixes with other tenants.
Vault credentials
All credentials stored in HashiCorp Vault. Never logged, never exposed. Passwords stripped from all logs and outputs.
HIT approval
Risky actions (sending messages, creating accounts, outbound changes) require human approval via the HIT queue.
E2E encryption
Event bus is E2E encrypted. API traffic is TLS. Browser sessions are isolated per tenant.
GDPR compliance
We comply with GDPR. Data stored in the EU. Data deletion on request. DPA available on request.
EU-hosted
Platform runs on OpenShift/Kubernetes in EU datacentres. No US Cloud Act exposure.
Ready to get started?
Start your first mission in minutes. No credit card required.