Security

Your material stays yours.

Trust starts with clear boundaries. Here is how Gyaany is being built to keep workspaces isolated, answers traceable and credentials out of asker hands.

Ask a security question
01

Workspace isolation

Every structured query and vector search is scoped to the workspace and the member’s access.

02

Encryption

Traffic is encrypted in transit. Stored source files and managed credentials use platform encryption at rest.

03

Key handling

Browser-session BYOK keys stay in that tab. Saved BYOK and managed keys use server-side secret storage and are never shown to askers.

04

Data region

India is the default deployment region. EU and US choices are planned for customers who need them.

05

Retention and deletion

Owners control retention and can request workspace deletion. The hard-delete target is within 30 days.

06

No training

Customer documents, questions and answers are not used to train Gyaany or third-party models.

07

Auditability

Admin actions such as invites, role changes, source deletion and settings updates are designed to be logged.

08

Abuse controls

Per-member, workspace and IP limits protect availability and keep costs predictable.

The simple promise

Every answer points back. Every workspace stays separate.

Formal certifications and external penetration-test reports will be published here as they become available. TODO: add compliance reports.

Questions welcome

Bring security into the conversation early.

Tell us what your institute or company needs before rollout.