Trust Center

SecuritAI Trust Center: your data, your control.

SecuritAI is built by a cybersecurity team, so security and privacy are the foundation, not features bolted on. This is exactly how we protect your data, where it lives, and the standards we align to.

Request the Security Overview

⚡ Trust posture
Never trains on your data
Encryption in transit & at rest
Canadian data residency
Full audit logging
SecuritAI data security and encryption

AI security and trust pillars

Data residency

Keep AI traffic and logs in Canada.

No training on your data

Your prompts and responses are never used to train any model.

Encryption

In transit and at rest.

Audit logging

Full, exportable records of every request and block.

Access control

Role-based access, tenant isolation, API-key scoping.

Deployment choice

Managed (Canada), private-VPC, or on-prem / air-gapped.

Standards alignment

Aligned to the NIST AI Risk Management Framework, the OWASP Top 10 for LLM Applications, CCCS guidance, and PIPEDA; aligned to NIST AI RMF and ISO/IEC 42001.

We state alignment and capability, not certifications we don’t yet hold. SOC 2 and formal certifications will be listed here when achieved.

How your data is handled

Every prompt and response that passes through SecuritAI is inspected in memory and logged to your tenant. Your data is never used to train any model, never sold, and never shared between tenants. Logs are encrypted, retention is configurable by plan, and you can export or delete them at any time. For Canadian customers, traffic and logs stay within Canadian data residency.

SecuritAI relies on a small set of infrastructure sub-processors for hosting and email. The current list, with their purpose and region, is available on request as part of the Security Overview, and we notify customers before adding a new sub-processor that handles customer data.

Responsible disclosure

Security researchers: found something? Report it to [email protected]. We respond quickly and credit responsible disclosures.

Security and trust questions

Does SecuritAI train on my data?

No. Your prompts and responses are never used to train any model, never sold, and never shared between tenants. They are inspected in real time and logged only to your own tenant.

Where is my data stored?

For Canadian customers, SecuritAI keeps AI traffic and logs within Canadian data residency. Private-VPC and on-premises deployments let you keep all data inside your own environment.

Can I deploy SecuritAI on-premises or air-gapped?

Yes. SecuritAI offers managed hosting in Canada, deployment into your own private VPC, and fully on-premises or air-gapped installation for government and critical infrastructure.

Is SecuritAI SOC 2 or ISO 27001 certified?

SecuritAI is aligned to the NIST AI Risk Management Framework, the OWASP LLM Top 10, CCCS guidance, and PIPEDA. We state alignment and capability honestly and do not claim certifications we do not yet hold. SOC 2 and formal certifications will be listed here when achieved.

What does SecuritAI log, and can I export it?

SecuritAI keeps a full, exportable audit log of every prompt, response, and block decision, encrypted at rest. Retention is configurable by plan, and the log is suitable for incident reporting and regulatory review under frameworks like Bill C-8.

Security questions? We have answers.

Request the Security Overview Book a Demo



Scroll to Top