SECURITY

HOW WE SECURE YOUR DATA

Last updated: March 1, 2025

ENCRYPTION

All data in transit uses TLS 1.3. Data at rest is encrypted using industry-standard AES-256 encryption. API keys and credentials are encrypted and never stored in plain text.

ACCESS CONTROLS

Role-based access ensures users only see what they need. API keys are scoped per organization. Multi-factor authentication is available for account security. All agent actions are audited and traceable.

INFRASTRUCTURE

Our platform runs on enterprise-grade cloud infrastructure with regular security patches, network isolation, and DDoS protection. We maintain strict separation between your data and other customers' data.

AI PROVIDER SECURITY

We work with trusted AI providers (Anthropic, OpenAI) that maintain strong security practices. Your prompts and content are processed according to their privacy and security policies. We do not train models on your content.

INTEGRATIONS

Third-party integrations (Typefully, DataForSEO, Frase, etc.) use OAuth or API keys that you control. We only access the minimum permissions needed. You can revoke access at any time.

INCIDENT RESPONSE

We maintain an incident response plan and monitor for anomalies. In the event of a security incident affecting your data, we will notify you promptly and take corrective action.

COMPLIANCE

We align our practices with frameworks such as SOC 2 and GDPR. Enterprise customers can request additional compliance documentation and data processing agreements.

REPORTING

If you discover a security vulnerability, please report it to security@agenteagora.com. We appreciate responsible disclosure and will acknowledge and address valid reports promptly.