Security

Security and responsible data handling

We take a layered approach to protecting accounts and data. This page describes the practices we use to operate SmartAI Open responsibly.

Encryption

We use encryption in transit (TLS) and encryption at rest to help protect data as it moves and while it is stored.

Account protection

Account safeguards help reduce the risk of unauthorized access, including secure sign-in and session controls.

Access controls

Role-based access and organization controls help teams manage who can see and do what within a workspace.

Security monitoring

We monitor our systems for unusual activity and maintain processes to respond to potential security events.

Responsible data handling

We handle data in line with our Privacy Policy and limit access on a need-to-know basis within our team.

Vulnerability reporting

If you believe you've found a security issue, contact us so we can investigate and respond appropriately.

We describe our current practices honestly. SmartAI Open does not claim certifications or compliance attestations that we cannot substantiate. If your organization requires specific compliance documentation, please contact us to discuss what we can provide.

Shared responsibility

Security is a partnership. We work to protect the platform, and we encourage customers to use strong passwords, manage access carefully, and review the outputs they rely on. AI-generated content can be inaccurate and should be verified before use in important decisions.

Reporting a concern

To report a suspected security issue, email info@smartaiopen.net with details. We aim to acknowledge legitimate reports and take reasonable steps to address verified issues.

Have security or compliance questions?

Our team is happy to walk through our practices and what documentation we can share.