Trust Center
Security & trust
Your data never leaves your database. We connect read-only, encrypt everything, and give you full control over access and audit trails.
How we protect your data
Encryption at rest & in transit
All data is encrypted with AES-256 at rest and TLS 1.3 in transit. Database credentials are encrypted with per-tenant keys.
Read-only connections
AI for Database connects to your database in read-only mode by default. We never write to, modify, or delete your data.
Role-based access control
Fine-grained RBAC ensures each user only sees the data their role permits. Integrates with your existing database permissions.
SSO & MFA
Enterprise single sign-on via SAML 2.0 and OpenID Connect. Multi-factor authentication available for all plans.
Audit logging
Every query, login, and configuration change is logged with user, timestamp, and IP address. Export logs to your SIEM.
Self-hosted option
Deploy AI for Database in your own infrastructure for complete data sovereignty. Nothing leaves your network.
SOC 2 Type II
Our infrastructure and processes are audited annually against SOC 2 Type II standards for security, availability, and confidentiality.
GDPR compliant
Full GDPR compliance with data processing agreements, right to deletion, and data portability support.
Our principles
Your data stays in your database
AI for Database runs queries against your database and returns results. We do not copy, store, or cache your business data on our servers.
Read-only by default
Every database connection is read-only unless you explicitly grant write access for specific workflow actions. We cannot modify your data.
You control access
You decide who on your team can query which databases. Our permissions layer sits on top of your existing database RBAC.
Full transparency
Every query run, every login, every configuration change is logged. You can export complete audit trails at any time.
Need more details?
Visit our detailed security page or contact us for a security questionnaire, DPA, or custom compliance review.