Security is not an optional module: it is the foundation of the entire platform. Our data infrastructure and AI models run on leading providers with SOC 2 Type 2 certification, and we add our own verifiable controls at every layer.
All information travels encrypted and is stored encrypted. No one along the way can read your conversations or your business data.
Multi-tenant separation at the database level: your company's information lives isolated from everyone else's. The database itself guarantees it — not a promise.
Our data infrastructure and AI models run on leading providers with SOC 2 Type 2 certification — inherited compliance at every layer of the service.
Automatic backups every day, encrypted and with an off-server copy. With automated monitoring: if a backup fails, our team gets an alert immediately.
A+ rating on securityheaders.com, strict Content Security Policy (CSP), rate limiting and authenticated webhooks on every integration.
Every action by every agent is logged: who asked, what was queried and what was answered. Continuous monitoring with immediate alerts to our team.
Agents can only run authorized functions (allowlist). They never get free access to the database — not to read, not to write.
Personal data processing in accordance with Colombia's Law 1581 of 2012 and the applicable data protection regulations in every country where we operate.
We're happy to answer them: controls, data architecture and operating practices, explained in as much detail as your team needs.