
Compliance-First Architecture
-
Your docs stay in your tenant.
-
Two deployment modes: Hosted (Bedrock) or Self-hosted (LLaMA).
-
Processing is ephemeral; outputs + audit artifacts saved to your job folder.
Data & Privacy (DPA-lite)Data processed:
-
Uploaded documents + prompts; no training on client data.
Retention: configurable; deletion on request.
-
Access: least-privilege; logs with request IDs.
-
Encryption: in transit (TLS) and at rest.Audit: SUMMARY.txt (ops, counts, timings) per job.
Security FAQ
-
Do you train on our docs? No.Where does the model run? Your choice: hosted Bedrock or self-hosted LLaMA.
-
How are redlines produced? Deterministic doc-diff, included as downloadable artifacts.Can we keep data on-prem? Yes (self-hosted profile).
-
Can we get an audit trail? Yes (SUMMARY.txt + logs with request IDs).