Security
Security and trust
Review the controls behind Ruhu: scoped access, protected credentials and an audit trail your team can inspect.
Compliance
Certification status
Review our current status and discuss the evidence your team needs before deployment.
SOC 2 Type II
Not yet audited
We don't hold a SOC 2 report yet. Ask us about our current controls and where the audit stands.
ISO 27001
Not yet certified
Our security management practices are documented, but not yet independently certified.
GDPR and UK GDPR
Data processing terms published
How we process personal data on your behalf is set out in our data processing terms.
Practices
Controls your team can review
Identity and access
Single sign-on, role-based permissions and tenant-scoped access help control who can view and change your agents.
Protected credentials
Connection credentials are encrypted at rest. Credential reads are recorded in the audit trail.
Audit trail
Review sign-ins, configuration changes and tool authorisation decisions in a tamper-evident log.
Tenant isolation
Row-level security keeps database queries within the organisation they belong to.
Personal-data controls
Detection and redaction tools help limit personal data in conversations. Configure these controls for your workflow.
Data requests
Track requests to export, correct or delete personal data, including identity verification and the request’s status.
Planning a security review?
Discuss deployment regions, access policies and data handling with us. Our data processing terms describe how personal data is handled.
Start with one workflow
Which customer request should we tackle first?
Bring a procedure and the systems it touches. We’ll walk through the agent, the setup and how you would measure the result.
