Data stays in your environment
Project data is stored in your AWS, GCP, Azure or on-premise environment. It is not brought onto Plan AI servers.
SECURITY & DATA HANDLING
YOUR DATA. YOUR ENVIRONMENT.
OUR OPERATING PRINCIPLES
Project data is stored in your AWS, GCP, Azure or on-premise environment. It is not brought onto Plan AI servers.
The default policy excludes model training. We configure AI provider ZDR options to prevent customer data from being used for training.
Sensitive information is masked and retained for the minimum period. Logs are automatically deleted after 30 days; external export is prohibited.
We use only the roles and scopes needed. Read-only access is used wherever it is sufficient.
System actions are recorded. Sensitive information is masked at the point of logging.
API keys and credentials are managed in KMS or Secrets Manager, separated by organization and environment. Keys rotate every 90 days.
Automatic retries, immediate alerts and safe rollback are designed into the system.
NDA and DPA agreements are available. Storage locations, permission scopes and security requirements are documented in the contract.
A CLEAR PATH FOR YOUR DATA
Originals remain in your environment
Sensitive information is masked
AI processing with non-training options
Results return to your environment
Actions recorded · deleted after 30 days
Customer environment: AWS · GCP · Azure · on-premise / AI models: Claude · GPT — ZDR options
BEFORE WE BEGIN
We can sign an NDA before discussing sensitive information, including before the project contract.
We review and agree on data processing terms, storage locations, permission scopes and additional requirements.
Email your infrastructure and security requirements. We review and reply within 1 business day.
Security & contract FAQLET’S MAKE WHAT’S NEXT.