Chief information security officers
The isolation model, the threat cases we designed against, and what we deliberately did not build.
Security / Architecture whitepaper
Deployment topology, isolation boundaries, key handling, and the control mapping. Watermarked, shared under NDA, and written for reviewers rather than buyers.
Contents
Seven sections, roughly forty pages, with diagrams your infrastructure team can build against. We do not publish it because the deployment detail of a client enclave is not public information.
Node specification, network placement, and how the enclave sits inside your existing segmentation.
Process, namespace, and storage separation between the runtime, the index, and the corpus.
Where keys are generated, where they are held, and what happens to them at teardown.
How classification is applied at ingest and enforced before inference reaches a passage.
Namespace restrictions inherited by background jobs, and why an agent cannot exceed the session.
Each guarantee mapped to the GDPR, HIPAA, and SOC 2 control it addresses.
Model updates in place, RAM wipe on teardown, and the evidence produced by each.
The isolation model, the threat cases we designed against, and what we deliberately did not build.
Hardware requirements, provisioning, and where the enclave touches your network.
The control mapping and the data handling statement, ready to attach to a security questionnaire.
Tell us who is reviewing and we will send the whitepaper under NDA, then walk it with them.