Legal
Security
Last updated: July 15, 2026
The security of your information, especially the R&D problems you entrust to Arandi, is a priority. A summary of our practices:
- Authentication: federated sign-in with Google (OAuth); each user has their own credentials.
- Data isolation: we apply Row-Level Security: each workspace is a closed universe, with no cross-access between customers.
- Encryption in transit: all traffic travels encrypted over TLS/HTTPS.
- Infrastructure: we rely on reputable cloud providers (database, hosting, and compute) that maintain their own security controls.
- AI content confidentiality: we do not use your confidential content to train AI models and do not expose it to other customers.
- Monitoring: we log and monitor errors and events to detect and respond to incidents.
- Internal access: team access to customer data is limited to what is strictly necessary to operate and provide support.
Vulnerability reporting
If you find a potential security issue, write to us at security@arandi.ai. We will review it and respond promptly.
We continuously scale our security practices. Formal certifications (e.g., SOC 2) are on our roadmap.