How NOCTRA_OS protects your data, who we rely on, and exactly where we stand on compliance — stated plainly, including what is still in progress.
Customer data belongs to the customer. We process it only to run the service you pay for, and you can request export or deletion.
Content sent to AI providers serves your request only — it is not used to train third-party models. Consequential AI actions are staged for a human to approve.
Services and roles hold only the access they need. The application runs under a restricted database role that cannot cross tenant boundaries.
Availability is published publicly, not hidden behind a login, and the platform is monitored continuously.
The controls that are live in production today
We run the money, records and communications of the businesses we serve, so security is engineered in rather than bolted on. Every control below is live in production today.
The biggest risk in any shared platform is one customer seeing another's data. We defend it at two independent layers, so a failure in either one cannot expose data on its own. At the application layer every request is bound to the signed-in user's own account — a request cannot ask for another company's data. At the database layer, PostgreSQL row-level security enforces the same boundary across 92 tables, under a restricted database role that is not permitted to bypass it. Cross-tenant reads and writes are rejected by the database itself, and we verify that with adversarial tests.
Sign-in runs through a dedicated identity provider using single sign-on, with multi-factor authentication required on every account. Permissions are deny-by-default: an account gets access only where it has been explicitly granted, and the application's own database role holds the minimum privileges it needs to operate.
Traffic is encrypted in transit with TLS 1.2 or better on every endpoint. Data at rest is encrypted with AES-256 on managed database storage. Credentials you entrust to us for integrations — mailbox passwords and similar — are encrypted a second time at the application layer, never stored in readable form.
All platform code is version controlled with a protected main branch and mandatory review before any change is merged. Nothing reaches production by editing a live server directly and hoping.
Availability is monitored continuously and published openly on our status page — software that stays up is the first honest answer to "is this real?". We maintain a documented incident-response plan with defined severity levels, containment steps and a commitment to notify affected customers without undue delay, targeting 72 hours, if their data is ever involved.
We keep a scored risk register that is formally reviewed every quarter, and re-assessed whenever something material changes. Before launch, NOCTRA_OS was put through a structured adversarial security assessment — a deliberate attempt to break it, from a hacker's perspective — covering authentication, tenant isolation, the AI action layer, integrations and data handling. Findings were prioritised and remediated.
Who we rely on, and what they handle
These are the third-party services NOCTRA_OS relies on to deliver the platform, and what each may handle. We keep this list current and tell customers when it materially changes.
We are glad to walk security teams through our controls, share the assessment summary, or provide the SOC 2 report under NDA once the examination completes.
Tell Charlie a little about you and he'll reach out right away.
Thanks — Charlie has your details and will reach out shortly.