SECURITY ARCHITECTURE & TRUST

Your Data Should Stay Under Your Control.

We provide clear, honest infrastructure security. TrueTales will never train public foundation models on your private documents.

Logical Tenant Workspace Isolation

Every organization is partitioned into dedicated logical tenant environments. Vector partitions, BM25 inverted indexes, and document stores cannot be queried across tenant boundaries.

Role-Based Access Control (RBAC)

Admins can assign fine-grained permissions across organization members, defining who can ingest documents, modify index parameters, view audit logs, or issue API keys.

Scoped Cryptographic API Keys

API keys can be restricted to read-only retrieval, specific knowledge indexes, or individual projects with automatic rotation capabilities.

Immediate & Permanent Data Deletion

When a document or index is deleted, all raw text records, metadata entries, and high-dimensional vector embeddings are permanently wiped from storage.

End-to-End Encryption

All network traffic to TrueTales AI Cloud is enforced via TLS 1.3. Stored documents and embedding vectors are encrypted using industry-standard AES-256.

Comprehensive Audit Logs

Detailed telemetry captures request timestamps, token counts, source chunk citations, and client IP metadata for enterprise security audits.

Zero Foundation Model Training Guarantee

Customer knowledge indexed inside TrueTales AI Cloud exists solely to provide grounded context for your queries. We do not sell, broker, or allow foundation model providers to retain your data for model training purposes.