Skip to content

Trust center

Security you can put in front of an auditor.

Encryption, per-tenant isolation, a forensic audit trail and PII redaction ship in every deployment. SOC 2 Type II is attested; every other framework is one NeuralSeek is built to meet in your environment.

Controls

Six controls every deployment ships with.

No add-ons and no enterprise tier. SaaS or fully air-gapped, every customer gets the same isolation, audit and redaction primitives.

Every deployment

  • Encrypted in transit and at rest

    TLS 1.2+ on all network traffic. Data at rest under AES-256, with keys held in a FIPS-validated KMS.

  • Per-tenant isolation

    Separate keys per tenant. Your prompts, documents and outputs never train shared models and never co-mingle.

  • A forensic audit trail

    Every question, answer, score and configuration change logged, timestamped, attributable, and exportable to S3, Splunk or Datadog.

  • PII detection and redaction

    13 detector categories and five enforcement actions — mask, flag, hide, delete, or pass through with a warning — configurable per intent.

  • Deploy where you are regulated

    SaaS, private cloud, sovereign cloud, OpenShift, or fully air-gapped on-prem. GovCloud-eligible topologies.

  • No training on your data

    Your data stays yours. NeuralSeek does not train models on your prompts, documents or interaction logs.

The record

The audit trail lands in a log you own.

The forensic audit trail is not a feature of one deployment shape. Run the containers in your own tenant and the record is written to a log store you operate, inside the perimeter you have already had audited — under your retention, your access controls and your incident process.

Under your retention.

console › governance › corporate logging
The corporate logging screen in the console, where each answer is written to a log store the customer runs.
The console's corporate logging screen, pointed at a log store the customer runs.

Documents

Request the artefacts your security review needs.

None of these is published for download. Each is sent by the security team on request, and the SOC 2 report is released under NDA.

  • SOC 2 Type II report

    The most recent audit behind the vendor-level attestation. Released under NDA rather than published.

    Request under NDA
  • Security whitepaper

    Architecture, encryption, isolation and operational controls, in the detail a reviewer works through line by line.

    Request the whitepaper
  • DPA and SCCs

    Data Processing Addendum, and the EU standard contractual clauses for international transfers.

    Request the DPA
  • Subprocessor list

    The third-party processors involved in the managed service, and the role each one plays.

    Request the list
  • A security question we have not answered

    Send it to the security team and it is routed to the right person — typically within one business day.

    Email the security team

Nothing on this page is a download link. Security questionnaires go to the same address; if an artefact you need is not listed, ask for it by name.

See it running inside your own boundary.

Talk to a NeuralSeek expert about how it fits your stack, where your data has to live, and the governance your auditors already expect.