Trust & Security Center
LAST REVIEWED · AUGUST 15, 2026
Encryption
Access controls
Continuous oversight
SECURITY PRACTICES
Our controls are designed to protect customer information throughout its lifecycle—from access to availability.
Encryption
Data is safeguarded in transit and at rest using modern encryption standards and managed key practices.
Access control
Role-based permissions and least-privilege principles help ensure people see only what they need to do their work.
Resilient infrastructure
Production systems are built for reliability with controlled environments, backups, and recovery-focused operational processes.
Monitoring & response
We maintain visibility into service health and investigate anomalies through documented incident response practices.
PRIVACY & GOVERNANCE
We are committed to clear data practices and give organizations the information they need to evaluate Enki IQ for their own security requirements.
Customer data ownership
Your business information remains yours. We use it only to provide and improve the service you choose to use.
Privacy controls
We support practical controls around access, retention, and organizational accountability to help teams manage their data responsibly.
Security review support
Our team can help answer security questions and provide the context your stakeholders need during their review process.
Hosted on AWS infrastructure
01–03 · TRUST SNAPSHOT / IDENTITY / B2B ACCESS
Enki IQ combines verified identity, organization-level access controls, encrypted cloud infrastructure, and continuous security monitoring to protect customer data from sign-in through every application workflow.
Verified identity
Secure sign-in and organization membership establish a trusted identity before anyone can access a workspace.
Organization isolation
Every request is tied to the right organization, role, and user—keeping customer workspaces clearly separated.
Governed administration
MFA-protected administration, short-lived credentials, and auditable deployment workflows reduce standing access and improve accountability.
Data protection & resilience
Encryption, managed secrets, automated backups, and multi-zone availability help protect customer data and keep critical services dependable.
How access stays scoped
Enki IQ verifies the user, confirms the active organization, checks membership and role, and binds each data request to the correct workspace. The result is a consistent security boundary across the product.
Designed for modern B2B teams. Organization-aware sessions keep workspace data separate when people switch accounts, while role-based permissions, seats, entitlements, and shared usage controls give administrators a clear way to manage access as teams grow.
04–06 · INFRASTRUCTURE / OPERATIONS / EDGE
Enki IQ runs on managed cloud infrastructure designed for privacy, reliability, and controlled change. Customer data is stored in private encrypted databases, public traffic is protected with managed TLS, secrets remain in managed storage, and infrastructure changes move through reviewed deployment workflows.
AWS
Google Cloud
Cloudflare
GitHub
Global application delivery
Serverless APIs and managed secrets
Private, encrypted data services
CloudTrail, GuardDuty, Security Hub, AWS Config, IAM Access Analyzer, Inspector, CloudWatch, Sentry, Datadog, and Arize work together to provide security visibility across cloud activity, application health, and AI workflows. High-impact signals are routed to the team for investigation and response.
Sentry
Datadog
Arize
EDGE PROTECTION · Authoritative DNS, protected discovery routes, cloud posture monitoring, and layered controls across public application surfaces.
OPERATIONAL RESILIENCE · Multi-zone availability, automated backups, validated cloud logging, and managed detection services support dependable operations.
Our cloud architecture is designed to scale with customer needs while keeping access controlled, changes reviewable, and security signals visible.
07–09 · SECURE DELIVERY / AI / ASSURANCE
Infrastructure and application changes follow reviewed, reproducible delivery paths. Short-lived deployment credentials, MFA-protected administration, dependency and secret scanning, scoped cloud permissions, and risk-based release gates help teams ship confidently without weakening the security baseline.
Gemini · Research intelligence
Vertex AI · Structured AI workflows
Voyage AI · Vector embeddings
Google Gemini
Vertex AI
Enki IQ works with specialized technology providers for identity, infrastructure, AI, observability, analytics, billing, and support. Each provider receives only the information required for its role, and our subprocessor information gives customers a clear view of where and why data is processed.
TRUST & ASSURANCE · Enki IQ is building its assurance program around evidence, independent testing, and transparent customer communication. SOC 2 and ISO 27001 certification are not currently claimed, and provider certifications apply to their own control environments.
10–12 · REPORTING / FAQ / PRIVACY
Security reviews should be straightforward. Explore the answers below or contact our team for architecture, access-control, privacy, and data-processing questions.
Where is Enki IQ hosted?
Enki IQ runs its primary application in a United States AWS region. Customer data is stored in private, encrypted Aurora PostgreSQL infrastructure with multi-zone availability and automated backups.
How does Enki IQ isolate organizations?
Every request is associated with a verified user and organization. Backend services confirm membership and role, then scope data access to the correct workspace before a request reaches customer information.
Does Enki IQ support SSO or SCIM?
Enki IQ is preparing enterprise SSO and directory-sync capabilities for supported plans. Contact our team for current rollout timing and deployment requirements.
Does Enki IQ encrypt data?
Yes. Customer data is encrypted at rest in Aurora, protected cloud evidence uses managed encryption keys, and public application traffic uses managed TLS.
How is AWS activity monitored?
AWS activity is captured through CloudTrail and monitored with GuardDuty, Security Hub, AWS Config, IAM Access Analyzer, Inspector, and CloudWatch. High-impact signals are routed for investigation.
How does Enki IQ protect its public edge?
Enki IQ combines managed application delivery, authoritative DNS, protected discovery routes, TLS, cloud posture monitoring, and layered security controls across its public application surfaces.
Is Enki IQ SOC 2 or ISO 27001 certified?
Enki IQ does not currently claim SOC 2 or ISO 27001 certification. Our assurance program is being developed around documented controls, evidence, independent testing, and transparent customer review support.
Is customer data used to train AI models?
Enki IQ uses specialized providers for specific AI workflows and documents them in its subprocessor information. Data is shared according to the purpose of each workflow and the applicable provider configuration and agreement.
How can I request deletion or exercise a privacy right?
Contact support@enkiq.ai. We verify the requester, identify the relevant systems and legal obligations, and coordinate the request under our Privacy Policy.
How do I report a vulnerability?
Email security@enkiq.ai with a concise description and non-destructive reproduction steps. Please do not include credentials, access tokens, customer data, or destructive proof.
PRIVACY & CUSTOMER REQUESTS · Enki IQ handles account, customer-provided, usage, integration, support, and technical information according to its Privacy Policy. Customers can contact our team for privacy requests, security reviews, and subprocessor information.