Legal

Security

Last updated: July 15, 2026

The security of your information, especially the R&D problems you entrust to Arandi, is a priority. A summary of our practices:

  • Authentication: federated sign-in with Google (OAuth); each user has their own credentials.
  • Data isolation: we apply Row-Level Security: each workspace is a closed universe, with no cross-access between customers.
  • Encryption in transit: all traffic travels encrypted over TLS/HTTPS.
  • Infrastructure: we rely on reputable cloud providers (database, hosting, and compute) that maintain their own security controls.
  • AI content confidentiality: we do not use your confidential content to train AI models and do not expose it to other customers.
  • Monitoring: we log and monitor errors and events to detect and respond to incidents.
  • Internal access: team access to customer data is limited to what is strictly necessary to operate and provide support.

Vulnerability reporting

If you find a potential security issue, write to us at security@arandi.ai. We will review it and respond promptly.

We continuously scale our security practices. Formal certifications (e.g., SOC 2) are on our roadmap.