Data isolation
Customer data is separated by workspace and enforced at the database level.
Security
AI Scaling protects customer data with workspace-level access controls, encryption, verified integrations, human approvals, and reviewed production changes.
Assurance
AI Scaling's security controls are mapped to the AICPA Trust Services Criteria for Security, Availability, and Confidentiality. These controls operate across our production systems as we prepare for independent examination.
Security controls
These controls apply across the systems that store customer data, connect external services, run AI agents, and deploy product changes.
Customer data is separated by workspace and enforced at the database level.
Access requires a valid identity and membership in the requested workspace.
Connected account credentials are encrypted, with encryption keys stored separately.
Inbound data is verified before processing. Invalid requests are rejected.
Agents are limited to one workspace. Sensitive actions can require human approval.
Production changes require review and automated checks before deployment.
Security review
Customers and qualified prospects can request security documentation or send us a security questionnaire.
Contact securityTo report a vulnerability, email the same address with reproduction steps. Do not access or retain another customer's data while testing.