Security & Trust
Your security and privacy are our top priorities. Learn how we protect your data and ensure the integrity of our platform.
End-to-End Encryption
All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption.
Secure Infrastructure
Built on enterprise-grade cloud infrastructure with regular security audits and monitoring.
Access Controls
Multi-factor authentication and role-based access controls protect your account and data.
Privacy by Design
Your data is never used to train AI models. We process only what's necessary to provide our service.
SOC 2 Compliance
We follow industry-standard security practices and undergo regular compliance audits.
Incident Response
Dedicated security team with 24/7 monitoring and rapid incident response procedures.
Data Protection
We implement multiple layers of security to protect your data:
- Encryption: All data is encrypted using industry-standard AES-256 encryption at rest and TLS 1.3 in transit
- Isolation: User data is logically separated and access is strictly controlled
- Backup Security: Regular encrypted backups with secure off-site storage
- Data Minimization: We collect and store only the data necessary to provide our services
AI Model Security
When processing your data through AI models:
- Inputs are sent securely to certified AI providers (OpenAI, Google, Anthropic, Meta)
- Data is not used to train or improve AI models
- Processing is ephemeral - data is not permanently stored by AI providers
- All communication uses encrypted channels
Infrastructure Security
Our platform is built on secure, enterprise-grade infrastructure:
- Cloud infrastructure with 99.9% uptime SLA
- Automated security monitoring and threat detection
- Regular penetration testing and vulnerability assessments
- Secure development lifecycle with code reviews and automated testing
- Network isolation and firewall protection
Access & Authentication
We ensure only authorized access to your data:
- Multi-factor authentication (MFA) for enhanced account security
- Role-based access controls for team features
- Session management with automatic timeout
- Audit logs for all data access and modifications
Compliance & Certifications
We adhere to industry standards and regulations:
- SOC 2 Type II compliance (in progress)
- GDPR compliance for European users
- CCPA compliance for California residents
- Regular third-party security audits
Incident Response
In the unlikely event of a security incident:
- 24/7 security monitoring and alerting
- Dedicated incident response team
- Rapid containment and remediation procedures
- Transparent communication with affected users
- Post-incident analysis and security improvements
Your Role in Security
Help us keep your account secure by:
- Using strong, unique passwords
- Enabling multi-factor authentication
- Keeping your contact information up to date
- Reporting suspicious activity immediately
- Logging out of shared or public devices
Security Questions?
If you have questions about our security practices or need to report a security issue, please contact us at our contact page or email us directly at security@omnicraftai.com.
Bug Bounty Program
We welcome security researchers to help us improve our platform. If you discover a security vulnerability, please report it responsibly through our contact page.