Security

Your company memory,
protected like your bank account.

Loreflow stores the most sensitive thing a company owns — its reasoning. This page is maintained by the Loreflow team to explain, in plain terms, the security model that data is handled under. Loreflow is being built to this model; for the current status of any individual control or certification, ask us.

Encrypted everywhere

Data is encrypted in transit and at rest, with keys rotated automatically and isolated per workspace.

  • TLS 1.3 for every connection, HSTS enforced
  • AES-256 encryption at rest
  • Per-workspace key isolation with automatic rotation
  • Secrets stored in a managed vault, never in application code

Permissions you already trust

Loreflow is designed to mirror the access rules of every source it reads. If someone cannot open a document in the source tool, it should not exist for them in Loreflow.

  • Per-source scoping by channel, folder, project or workspace
  • Source permissions re-synced on every crawl
  • Role-based access inside the workspace, including read-only investors
  • Granular investor access levels: reports only, reports plus metrics, or full read access

We store the connective layer,
not your files

Original content stays in the source tool. Loreflow keeps references, relationships and summaries, and fetches the original on demand with the viewer's own permissions.

  • No shadow copy of your document library
  • Deletion in the source propagates to Loreflow
  • Full workspace export and hard delete on request

Operational safeguards

Access to production is limited, logged and reviewed. Every administrative action inside a workspace is recorded.

  • SSO and SCIM provisioning on Enterprise
  • Immutable audit log of access, exports and permission changes
  • Least-privilege production access with mandatory review
  • Regional data residency options (US, EU)

Compliance posture

Loreflow runs a SOC 2 Type II program and supports GDPR obligations including DPAs and subprocessor disclosure. Certification status, current subprocessor list and penetration test summaries are shared under NDA on request — ask us rather than assuming a status from this page.

Report a vulnerability

Send findings to security@loreflow.example. We acknowledge reports within one business day and will keep you updated through remediation.

Posture at a glance

The controls a security reviewer asks about first.

Sample figures illustrating the targets the production platform is held to. Ask us for the current measured position, the report, the policy or the log.

99.98

0.00%

Uptime, trailing 90 days

API and sync workers measured together.

24

0 hrs

Critical patch window

Median time from disclosure to production deploy.

0

0

Customer data incidents

Since the company was founded. Incident history is public.

100

0%

Encrypted at rest and in transit

AES-256 at rest, TLS 1.3 in transit, no exceptions.

01

Permissions are mirrored,
never widened

Loreflow is built to read your sources with the same access model they already enforce. If a document is invisible to someone in Notion, it stays invisible to them here — including inside search results, answers and the graph.

  • Per-user permission checks at query time, not index time
  • Revocations propagate within one sync cycle
  • Private channels and restricted docs stay private

Independent annual penetration testing is part of the security program; report available under NDA.

Access decisions per query

Every answer is filtered per person before it renders.

Artifacts in graph128,400 · 100%
Matching the question4,120 · 3%

97% from previous step

Visible to this user2,870 · 2%

30% from previous step

Cited in the answer6 · 0%

100% from previous step

How data flows

Where your data goes,
and where it does not.

01 / 03

Read from source

Read-only OAuth scopes, scoped to what you tick. We never request write access to a source unless a feature you enabled requires it.

OAuthRead-onlyRevocable
02 / 03

Process and link

Content is encrypted in transit and at rest, processed in an isolated tenant, and never used to train a shared model.

AES-256Tenant isolationNo shared training
03 / 03

Serve with filters

Answers are assembled per user, per query, with the source permission checked at the moment of the request.

Per-user filterAudit loggedExportable

Plan differences

What each tier gets.

Security fundamentals are included on every plan. Governance and compliance tooling scales with the tier.

CapabilityPro TeamStartupEnterprise
Encryption at rest and in transit
Permission mirroring
Audit log1 yearUnlimitedUnlimited + legal hold
Role & scope permissionsStandardGranularGranular
Scoped investor access levels1 seatUnlimitedUnlimited
SSO / SAML
SCIM provisioning
Data residency choice
Private AI models / BYO key
Signed DPA and sub-processor alerts

Send us your security questionnaire.

We answer reviews, DPAs and procurement forms within one business day, and we will happily join your vendor call.

FAQ

About security.

How Loreflow is built to handle data, access and compliance.

Open the live demo

In an isolated per-workspace store, encrypted at rest and in transit, with regional hosting options for EU-only requirements.

Read-only scopes per connector, narrowed to the resources you select. There is no write access to any source system.

No. Workspace content is never used to train models, and AI recall runs against your workspace only.

Yes. Questionnaires, DPAs and subprocessor lists are answered within one business day — see the DPA and subprocessors pages.

Role-based access with audit logging on every read. Support access to a workspace is time-boxed and requires explicit approval.