Trust & Compliance

Trust Center

Enterprise-grade protection for your construction project data. Review our security practices, privacy policy, and terms of service.

Secure AWS Infrastructure

Hosted on AWS with server-side encryption (AES-256) and TLS 1.3 for data transmission. Your drawings and specs are protected at rest and in transit.

Your Data Is Never Used for Training

Your documents are never used to train AI models. Each project is isolated—your competitive intelligence stays yours. Zero data sharing between customers.

Data Segregation

Strict programmatic controls prevent any data crossover between customers. Your information remains separate and confidential.

Data Deletion on Request

Request deletion of your project data at any time via email. We honor deletion requests promptly. Enterprise customers can configure automatic deletion after 30, 60, or 90 days.

Access Controls

Role-based access control ensures only authorized users see project data. Share results with specific team members. Audit logs track all access.

Where Your Files Live

Complete transparency about your data storage and handling

Storage Location

AWS US-West-2 region with data centers in Northern California. Amazon S3 with object-level access controls. Your data stays in the US.

Who Can Access

Role-based access control: Users access only their own projects or those shared with them; Admins have organizational access. Strict data segregation between customers.

Data Deletion

Delete your data anytime via the app or by request to [email protected].

No AI Training on Your Data

Your data is never used to train AI models. LLM providers (OpenAI, Anthropic, Google) are contractually prohibited from using your content for training. OpenAI and Anthropic operate with us under a Zero Data Retention agreement.

Enterprise Security Features

Built for organizations with strict security requirements

Authentication & Access Control

Firebase authentication with token validation for every request. SSO integration available. MFA via TOTP apps (DUO, Google Authenticator). Role-based access controls.

Security Documentation

Security questionnaire and documentation available on request.

AWS Infrastructure

Hosted on AWS ECS with least-privilege IAM roles. Automated daily backups (60-day retention), monthly backups (1-year retention), and point-in-time recovery for 35 days. S3 file versioning enabled for recovery.

Incident Response

Documented incident response procedures. Prompt notification to affected customers in the event of a data breach.

Questions About Security?

Need a security review packet or have compliance questions?