Factual answers on security, privacy, data protection and compliance. No marketing claims — only how the platform is actually built. We do not list certifications we do not hold.
One consistent standard across data, identity, isolation, evidence and operations.
The questions enterprise security, legal and procurement teams ask most.
Hosting region is configurable and your data is kept within agreed boundaries. We tell you where your data lives.
Yes — TLS in transit and encrypted at rest, with protection on the underlying storage.
The platform is multi-tenant with per-tenant logical isolation and no cross-tenant access; operator consoles are role-gated.
Integrations are read-only and process metadata, not payloads. You can revoke access at any time.
Connector credentials are stored as secrets, masked in the interface, and never logged or returned in responses.
Yes — an append-only audit log of access decisions, plus a tamper-evident evidence ledger with cryptographic hashing.
Yes, a DPA is available on request.
Yes, SSO / SAML is available on the Enterprise plan, with role-based access control and least-privilege defaults.
TrustedAIGov is built to the EU AI Act, ISO/IEC 42001, the NIST AI RMF and DORA — the frameworks the platform is designed and aligned to.
Your tenant data can be exported and purged on request as part of off-boarding.