Security
Security you can explain to your own customers
We protect your work the way we would want ours protected: with sensible defaults, clear controls and honesty about what we do.
Encryption
Data is encrypted in transit and at rest.
Access control
Roles, project permissions and optional single sign-on.
Audit logs
A record of sensitive actions, who did them and when.
Backups and recovery
Regular backups and a tested recovery process.
Privacy by design
We collect what we need, and your content is never used to train shared AI models.
Reliability
Monitored services and a public status page.
Our practices
- Least-privilege access to production systems
- Dependency and vulnerability scanning
- Responsible disclosure: report issues to the security contact below
- Self-hosting available on Enterprise
This page describes our approach in plain language. For formal documentation — policies, penetration-test summaries, data-processing terms — contact us.