Your research data deserves the highest protection. We've implemented comprehensive security measures to protect your data at every level.
TLS 1.3 in transit, AES-256 at rest
Row-level security for data isolation
GDPR & Privacy Act aligned
| Component | Provider | Security |
|---|---|---|
| Application Hosting | Vercel | SOC 2 Type II |
| Database | Supabase (AWS) | SOC 2 Compliant |
| AI Processing | OpenAI | Enterprise Security |
| Payments | Stripe | PCI DSS Level 1 |
Your data is completely isolated from other clients:
Client A Data ←→ [RLS Boundary] ←→ Client B Data
↑ Cannot access each other
Export your data anytime in JSON, CSV, Excel, or Markdown formats.
Control consent language, data retention, and team access permissions.
Change password, view sessions, and manage access tokens.
No. Your data is completely isolated. Row-level security ensures no other client can ever access your data.
No. We use OpenAI's API which does not use customer data for training. Your prompts and responses are processed and discarded.
Data is stored in secure data centres primarily in the United States and Australia, with encryption at rest and in transit.
We will notify you within 72 hours, provide details of what occurred, and take immediate steps to remediate and prevent future incidents.