Trust & Security Center

LAST REVIEWED · AUGUST 15, 2026

Security is built into every signal.

Security is built into every signal.

Enki IQ protects your data with layered safeguards, transparent controls, and privacy-first operations—so your team can move with confidence.

Enki IQ protects your data with layered safeguards, transparent controls, and privacy-first operations—so your team can move with confidence.

Encryption

Access controls

Continuous oversight

SECURITY PRACTICES

Defense in depth, by design.

Defense in depth, by design.

Our controls are designed to protect customer information throughout its lifecycle—from access to availability.

Encryption

Data is safeguarded in transit and at rest using modern encryption standards and managed key practices.

Access control

Role-based permissions and least-privilege principles help ensure people see only what they need to do their work.

Resilient infrastructure

Production systems are built for reliability with controlled environments, backups, and recovery-focused operational processes.

Monitoring & response

We maintain visibility into service health and investigate anomalies through documented incident response practices.

PRIVACY & GOVERNANCE

Your data stays yours.

Your data stays yours.

We are committed to clear data practices and give organizations the information they need to evaluate Enki IQ for their own security requirements.

Customer data ownership

Your business information remains yours. We use it only to provide and improve the service you choose to use.

Privacy controls

We support practical controls around access, retention, and organizational accountability to help teams manage their data responsibly.

Security review support

Our team can help answer security questions and provide the context your stakeholders need during their review process.

Hosted on AWS infrastructure

01–03 · TRUST SNAPSHOT / IDENTITY / B2B ACCESS

Security built around every customer workspace.

Security built around every customer workspace.

Enki IQ combines verified identity, organization-level access controls, encrypted cloud infrastructure, and continuous security monitoring to protect customer data from sign-in through every application workflow.

Verified identity

Secure sign-in and organization membership establish a trusted identity before anyone can access a workspace.

Organization isolation

Every request is tied to the right organization, role, and user—keeping customer workspaces clearly separated.

Governed administration

MFA-protected administration, short-lived credentials, and auditable deployment workflows reduce standing access and improve accountability.

Data protection & resilience

Encryption, managed secrets, automated backups, and multi-zone availability help protect customer data and keep critical services dependable.

How access stays scoped

Enki IQ verifies the user, confirms the active organization, checks membership and role, and binds each data request to the correct workspace. The result is a consistent security boundary across the product.

Designed for modern B2B teams. Organization-aware sessions keep workspace data separate when people switch accounts, while role-based permissions, seats, entitlements, and shared usage controls give administrators a clear way to manage access as teams grow.

04–06 · INFRASTRUCTURE / OPERATIONS / EDGE

A resilient cloud foundation, monitored end to end.

A resilient cloud foundation, monitored end to end.

Enki IQ runs on managed cloud infrastructure designed for privacy, reliability, and controlled change. Customer data is stored in private encrypted databases, public traffic is protected with managed TLS, secrets remain in managed storage, and infrastructure changes move through reviewed deployment workflows.

AWS

Google Cloud

Cloudflare

GitHub

Global application delivery

Serverless APIs and managed secrets

Private, encrypted data services

CloudTrail, GuardDuty, Security Hub, AWS Config, IAM Access Analyzer, Inspector, CloudWatch, Sentry, Datadog, and Arize work together to provide security visibility across cloud activity, application health, and AI workflows. High-impact signals are routed to the team for investigation and response.

Sentry

Datadog

Arize

EDGE PROTECTION · Authoritative DNS, protected discovery routes, cloud posture monitoring, and layered controls across public application surfaces.

OPERATIONAL RESILIENCE · Multi-zone availability, automated backups, validated cloud logging, and managed detection services support dependable operations.

Our cloud architecture is designed to scale with customer needs while keeping access controlled, changes reviewable, and security signals visible.

07–09 · SECURE DELIVERY / AI / ASSURANCE

Secure delivery, transparent AI data flows.

Secure delivery, transparent AI data flows.

Infrastructure and application changes follow reviewed, reproducible delivery paths. Short-lived deployment credentials, MFA-protected administration, dependency and secret scanning, scoped cloud permissions, and risk-based release gates help teams ship confidently without weakening the security baseline.

Gemini · Research intelligence

Vertex AI · Structured AI workflows

Voyage AI · Vector embeddings

Google Gemini

Vertex AI

Enki IQ works with specialized technology providers for identity, infrastructure, AI, observability, analytics, billing, and support. Each provider receives only the information required for its role, and our subprocessor information gives customers a clear view of where and why data is processed.

TRUST & ASSURANCE · Enki IQ is building its assurance program around evidence, independent testing, and transparent customer communication. SOC 2 and ISO 27001 certification are not currently claimed, and provider certifications apply to their own control environments.

10–12 · REPORTING / FAQ / PRIVACY

Specific answers. Clear routes.

Specific answers. Clear routes.

Security reviews should be straightforward. Explore the answers below or contact our team for architecture, access-control, privacy, and data-processing questions.

Where is Enki IQ hosted?

Enki IQ runs its primary application in a United States AWS region. Customer data is stored in private, encrypted Aurora PostgreSQL infrastructure with multi-zone availability and automated backups.

How does Enki IQ isolate organizations?

Every request is associated with a verified user and organization. Backend services confirm membership and role, then scope data access to the correct workspace before a request reaches customer information.

Does Enki IQ support SSO or SCIM?

Enki IQ is preparing enterprise SSO and directory-sync capabilities for supported plans. Contact our team for current rollout timing and deployment requirements.

Does Enki IQ encrypt data?

Yes. Customer data is encrypted at rest in Aurora, protected cloud evidence uses managed encryption keys, and public application traffic uses managed TLS.

How is AWS activity monitored?

AWS activity is captured through CloudTrail and monitored with GuardDuty, Security Hub, AWS Config, IAM Access Analyzer, Inspector, and CloudWatch. High-impact signals are routed for investigation.

How does Enki IQ protect its public edge?

Enki IQ combines managed application delivery, authoritative DNS, protected discovery routes, TLS, cloud posture monitoring, and layered security controls across its public application surfaces.

Is Enki IQ SOC 2 or ISO 27001 certified?

Enki IQ does not currently claim SOC 2 or ISO 27001 certification. Our assurance program is being developed around documented controls, evidence, independent testing, and transparent customer review support.

Is customer data used to train AI models?

Enki IQ uses specialized providers for specific AI workflows and documents them in its subprocessor information. Data is shared according to the purpose of each workflow and the applicable provider configuration and agreement.

How can I request deletion or exercise a privacy right?

Contact support@enkiq.ai. We verify the requester, identify the relevant systems and legal obligations, and coordinate the request under our Privacy Policy.

How do I report a vulnerability?

Email security@enkiq.ai with a concise description and non-destructive reproduction steps. Please do not include credentials, access tokens, customer data, or destructive proof.

PRIVACY & CUSTOMER REQUESTS · Enki IQ handles account, customer-provided, usage, integration, support, and technical information according to its Privacy Policy. Customers can contact our team for privacy requests, security reviews, and subprocessor information.

Security questions deserve specific answers.

Contact Enki IQ for architecture, data-flow, subprocessor, enterprise-access, or privacy questions. We will answer within the bounds of current evidence and the applicable agreement.

Security questions deserve specific answers.

Contact Enki IQ for architecture, data-flow, subprocessor, enterprise-access, or privacy questions. We will answer within the bounds of current evidence and the applicable agreement.