Encryption
AES-256 at rest, TLS 1.3 in transit. Customer-managed keys (CMK) available on Enterprise.
- Per-tenant key isolation
- Hardware security modules (HSM)
- Key rotation policies
Built from the ground up for regulated industries. Every control, every log, every certification you need to sleep at night.
Six layers of protection — from transit encryption to tamper-evident audit trails — all transparent to your end users.
AES-256 at rest, TLS 1.3 in transit. Customer-managed keys (CMK) available on Enterprise.
Bring your own IdP with SAML, OIDC, and SCIM. Enforce MFA globally or per-role.
Every access, edit, and permission change recorded. Tamper-evident and exportable.
Choose where your documents live. US, EU, and APAC regions available today.
Anomaly detection on access patterns. Automatic lockouts on impossible travel.
Policies for retention, legal hold, and DSR workflows — built into the platform.
Security overview, DPA, architecture diagrams, and penetration test summary — available under NDA in minutes.