Security

Your knowledge base is everything your competitors don't have. We treat it that way.

Australian hosting

Production data lives in the AWS Sydney region. No cross-border transfers unless you explicitly opt in.

Encryption

AES-256 at rest, TLS 1.2+ in transit. Backups encrypted with separate keys, rotated quarterly.

OAuth-only sign-in

Google SSO and OAuth. No shared passwords, no service accounts, no API keys floating in chat.

Row-level security

Permissions enforced at the database layer. A finance doc never reaches an ops query, even via a clever prompt.

No LLM training

Your content is used only to answer your team's questions inside your instance. Never used to train any model.

Audit logs

Every query, source access, permission change and export is logged and retained for 12 months.

Vulnerability management

Dependencies scanned daily. Quarterly internal pen tests. Responsible disclosure: [email protected]

Free monthly export

Download all content and curated answers as JSON anytime. You own your data — and you can leave with it.

Compliance posture

KnowledgeHub follows SOC 2-aligned controls. We are not yet SOC 2 Type II certified; an audit is on the 2026 roadmap. Teams with specific compliance requirements (ISO 27001, APP, GDPR) can request our security questionnaire and architecture overview during the demo.

Reporting a vulnerability? Email [email protected]. We respond within 1 business day and credit responsible disclosure in our changelog.