Move forward with AI. Stay in control.

Bring AI into your business with protected data, governed business rules, and a record of how work gets done.

A geometric security key An oversized, faceted ivory key with precise dark outlines, extending Factify's geometric illustration style.

Security you can evaluate.

  • ISO 27001ISO 27001 compliant
  • GDPRPersonal data protection
  • SOC 2SOC 2 Type II
  • CCPAConsumer privacy

Protected data.
Clear boundaries.

The controls behind how Factify handles information, manages access, and preserves a record of activity.

Read our privacy policy

Encrypted in transit and at rest.

Data is encrypted while stored and while moving between systems.

Access limited by need.

Personal data access is limited to authorized personnel with a business need. Permissions are reviewed regularly.

Encrypted backups.

Database backups are encrypted and verified regularly to protect their confidentiality and integrity.

Data residency controls.

Review available residency controls against the requirements of your deployment.

Accountable access.

Access logs provide a record of activity to support security oversight and review.

Tamper-evident version history.

Keep a traceable history of the rules that govern your workflows.

Your rules stay in force.
Your work stays accountable.

Factify connects the rules your people approve to the tools your agents use, with evidence behind each execution.

Clear ownership.

Bring policies, procedures, and business logic into one versioned rulebook with accountable owners.

Factify rulebook organized into business processes and their approved rules.

The information behind your decision.

  • Review our security.

    Discuss your requirements and the documentation needed for your security assessment.

    Request information
  • Understand our privacy practices.

    Read how we handle personal data, manage access, and approach retention.

    Read the privacy policy
  • Review data processing terms.

    Request our data processing addendum for customer personal data.

    Request the DPA

Looking for current platform availability?

View service status

The details
behind the trust.

A closer look at data protection, governance, and evaluating Factify for your organization.

Talk to our team
How is my information protected?

Factify encrypts data in transit and at rest. Personal data access is restricted to authorized personnel with a business need. Database backups are encrypted and regularly verified.

Who at Factify can access personal data?

Access is limited to authorized personnel who need it for their work, and permissions are reviewed regularly. Limited engineering access for support is subject to customer consent, as described in our Privacy Policy.

Is a data processing addendum available?

Yes. A data processing addendum is available for the handling of customer personal data. Contact our team to request it.

What happens when a case falls outside the rulebook?

Undefined cases go to the domain owner for a decision. Work executed through Factify can be traced to the applicable rulebook version, sources, and approvals.

Where can we find privacy and retention information?

Our Privacy Policy describes personal data handling and retention. For customer data processed on your behalf, review the applicable data processing terms with our team.

How can our security team evaluate Factify?

Contact our team to discuss your requirements and the documentation needed for your assessment.

Bring your security team into the conversation.

Review the controls, data handling, and requirements that matter to your deployment.

Request security information