Built to protect the work that matters.
Defaults that meet enterprise expectations on day one. Procurement-ready, honest about where we are.
Eight pillars, no hand-waving.
TLS 1.2+ on every connection. AES-256 at rest. Customer-managed encryption available on Enterprise.
Your prompts and conversations are never used to train base models. Provider contracts enforce the same.
Row-level security enforced at the database. A workspace cannot read another workspace's data, full stop.
Workspace and admin actions captured with timestamps. Exportable on Enterprise for SIEM ingestion.
On Enterprise, route inference to your own provider accounts so usage and policy live where you already manage them.
US and EU regions available on Enterprise. Sub-processor list shared on request.
Workspace admins can configure retention windows for rooms and exports. Default is 'keep until you delete'.
Report security issues to security@x21.com. We respond within 1 business day and ack within 24 hours.
Where we are, exactly.
We will tell you the truth, not a marketing summary. Ask us anything specific.
Reporting a vulnerability
Email security@x21.com with a clear reproduction. We acknowledge within 24 hours and respond with a triage decision within 1 business day. We do not pursue legal action against good-faith research.
Talk to a human about security.
A 30-minute call usually closes most procurement reviews.