Security

Enterprise-ready by design.

We run national subscriber bases, so security is not an add-on. Here is our posture — stated honestly: what is in place today, and what we are pursuing next.

Security posture

How we protect your data.

Controls across the stack, from the network to the model to the people who operate it.

Encryption

  • TLS 1.2+ for all data in transit
  • AES-256 encryption at rest
  • Secrets held in a dedicated key vault

Access control

  • Role-based access, least privilege
  • SSO and MFA required for staff
  • Access reviewed and fully logged

Data handling

  • PII redaction in logs and prompts
  • Customer data never trains models for others
  • Data-residency options for enterprise

Infrastructure

  • Hardened cloud infrastructure
  • Isolation between environments
  • Continuous patching and hardening

Monitoring & response

  • 24/7 monitoring and alerting
  • Audit log on every agent action
  • Documented incident-response plan

Reliability & backups

  • Encrypted, tested backups
  • Redundancy across availability zones
  • Business-continuity & DR planning

Application security

  • Secure SDLC with code review
  • Dependency & vulnerability scanning
  • Third-party penetration testing

Governance & compliance

  • SOC 2 Type II audited controls
  • GDPR-aligned data processing
  • Subprocessors under contract, list on request

Payments & invoicing

  • PCI DSS Level 1 payment infrastructure
  • Card data tokenized, never stored by Inerxia
  • DIAN-compliant electronic invoicing

Posture last updated · 2026-07-21

Enterprise ready · Trust & security

Your subscriber data, handled the way an operator expects.

Encryption everywhere, least-privilege access and full auditability, with SOC 2 Type II and PCI DSS Level 1 payment infrastructure.

EncryptionPCI DSS Level 1Data isolationSOC 2 Type IIAccess controlAudit logging
Report a vulnerability

Found a security issue? We want to hear from you. Email security@inerxia.co with the details and steps to reproduce. We investigate every report, will not pursue good-faith researchers, and will keep you updated as we remediate.

security@inerxia.co