Trust & Security

Your compliance data, protected by design

Netallion is where teams keep their most sensitive evidence — controls, gaps, policies, and audit artefacts. Here is exactly how we isolate, encrypt, and account for it.

Multi-tenant isolation

Every organisation's data is isolated at two layers. The application verifies your membership before any data access, and the database enforces PostgreSQL row-level security on org-scoped tables — the application's database role cannot bypass it. A query without an established organisation context returns nothing.

Authentication & access

Access is via single sign-on (OIDC) through our identity provider, with role-gated entry to the portal. There is no open self-registration — accounts are provisioned, and MFA is enforced at the identity provider.

Encryption

All traffic is encrypted in transit with TLS. Data at rest is encrypted by our managed PostgreSQL provider. Secrets and API keys are held in the platform's encrypted environment configuration, never in source control.

Audit logging

Every state-changing action — create, update, delete — is written to an append-only audit log with the acting user, organisation, and resource. Coverage is enforced in our build pipeline: a mutation route that doesn't log is a failing build.

Rate limiting & abuse protection

Tiered rate limits protect every public and authenticated endpoint, with tighter per-user burst limits on AI endpoints. Outbound requests are guarded against server-side request forgery (SSRF), and all input is validated at the boundary.

AI data handling

User-supplied content is sanitised, sensitive values are masked, and inputs are delimited before they ever reach a language model; model responses are schema-validated before returning. We do not use your compliance data to train models.

Data residency & sub-processors

Your structured compliance data is stored in the United States (AWS us-east-1), and uploaded evidence files and documents are stored in Cloudflare R2 object storage. We use a small set of sub-processors to run the service. Each handles data only for the purpose below.

Sub-processorPurposeLocation
NeonManaged PostgreSQL databaseUnited States (AWS us-east-1)
VercelApplication hosting & CDNUnited States / global edge
AnthropicAI processing for compliance assistantsUnited States
Cloudflare R2Evidence & document object storageGlobal (Cloudflare-managed)
CloudflareDNS & network protectionGlobal edge
StripePayment processing (when billing is enabled)United States
Zoho ZeptoMailTransactional emailAustralia (au domain)

Our compliance posture

We'll be precise about what's true today. Netallion builds and operates the platform against the same control frameworks we help customers prepare for — access control, encryption, audit logging, and change management are in place and enforced.

We are not yet third-party certified against ISO 27001 or SOC 2, and we won't display a badge we haven't earned. Formal attestation is on our roadmap. If you need our current control documentation for your vendor review, ask us — we'll share what we have.

A note on what we are: Netallion is a readiness and assurance platform, not a certification body. We help you prepare the evidence an audit needs; the certificate itself is always issued by an independent accredited third party.

Found a security issue?

We welcome responsible disclosure. If you believe you've found a vulnerability, please report it — we'll acknowledge and work with you on a fix.

Questions from your security team?

We're happy to walk your reviewers through our architecture, isolation model, and data handling.

Talk to us