ferent.aiTrust
Security and trust

What your security team will ask about.

This product holds your customer conversations, your support history and your revenue numbers. Below is what we enforce and where the enforcement actually happens. Where we fall short of what an enterprise expects, that is on the page too.

Start a security review Read the privacy policy
The four commitments
We never use your data to train models.
A person approves anything the AI sends to your customer.
Permissions are checked on the server for every request.
Each workspace is isolated at the database level.
Your data

Isolated at the database level.

One workspace's records cannot be read from another workspace's session. The rule lives in the database, so a mistake in application code does not open a path around it.

Tenant isolation

PostgreSQL row-level security is enabled and forced on 319 tables. Each carries an isolation policy tied to the workspace on the session, and no role can be granted an exception.

Row-level security

Within a workspace, records are filtered by ownership and role: a CSM sees their own accounts and meetings. The database roles that can bypass those policies are reserved for sign-in and run on a separate connection pool.

Encryption

Encrypted in transit. Stored credentials (integration keys, OAuth tokens, model API keys) are encrypted with AES-256-GCM before they reach the database, and the API returns only a last-four hint, never the value.

Retention you set

Retention is set per data category. Outlook email can be summarised and the content deleted immediately afterwards. You configure how long recordings live.

Consent on capture

Recording requires attested consent, follows a workspace privacy policy, and writes to an audit table. Our own recorder is the only source. The Teams and Zoom connectors contribute metadata and transcripts but cannot pull provider recording media. For surveys, the privacy mode set at build time decides whether a respondent can be named.

Portability

Configuration exports as portable packages, translations as CSV. A vendor in this category recently shut down with twenty-six days' notice and no migration path.

Access control

Checked on the server for every request.

A hidden button is not access control. When a request arrives that the user is not entitled to make, the server rejects it, including requests that never came through our interface.

Role-based access
Roles carry granular capabilities, evaluated per request in server middleware. A denied request returns a permission error in the user's own language.
Module entitlement
Module access is checked against active entitlements with start and end dates, so a team only sees the parts of the platform you currently license.
SSO and MFA
Microsoft Entra ID and Amazon Cognito, with MFA modes, email-domain discovery, per-user login policy and enforced SSO where you require it.
Scoped API keys
Scoped per connection and per provider, with the permissions each one holds recorded beside it. Slack is opt-in per channel. We do not crawl conversations you have not linked.
Time-boxed vendor access
When our support team needs to enter your workspace, the session records a reason and expires on its own.
Configuration is attributed
Roles, scoring, integrations and AI policy are all changed inside your own workspace, and each change is recorded against the administrator who made it. What you can configure sits on the platform page.
Audit below the application
Published compensation plans are made immutable by database triggers. A rule inside a published version cannot be edited or deleted, only superseded.
AI governance

We do not train on your data. No hedge.

Not to improve our models, not for benchmarking, not in aggregate, not anonymised, and not “to inform how the assistant responds later”. Your customer conversations are yours. It is written into the contract, so we cannot quietly change our minds. Aggregated usage and performance data (which features get used, error rates, how long a page takes to load) is a separate thing: it describes our software, not your customers, and never contains customer content.

Nothing is retained by a provider

We use providers under zero-retention terms, so prompts are not stored on their side either. Which provider, and whether one is involved at all, is set below.

Every call is logged

Every model call writes an audit row: workspace, user, feature, provider, model, token counts, latency, whether a fallback was used, and which data categories were involved.

Data policies you write

For each data category (accounts, contacts, meeting transcripts, email, documents) you decide whether AI may process it, whether an external provider may see it, whether it may be retained, and whether sensitive values are masked first.

Human approval, always

A follow-up email is drafted, then stops in front of a person. Nothing reaches your customer from the draft itself. Delivery is a separate step, separately configured, that someone triggers. Field changes heading back to your CRM queue the same way.

Permissions carry through

The assistant reads through the same role and field-level access as the person asking. Fields hidden from that role never reach the prompt.

Explainable by default

Scores show their components and predictions name their model and confidence.

Where it runs

Where it runs, and who else touches it.

The platform runs on AWS in US East. The AI layer is not tied to one vendor: you can use the models we manage, bring your own keys, or point it at a model inside your own network. Everyone who touches your data is named below.

Three ways to run the models

Two operating modes. Use the models we manage, or bring your own account and keys: your provider, your contract, your rate limits.

Endpoints are allow-listed

Point the platform at a model running inside your estate. The endpoint has to be on an allow-list an administrator maintains, so nobody can quietly redirect it somewhere else.

A model per task

Summarising, reasoning, embedding and transcription are configured separately, each with its own token ceiling, daily cap and fallback rule.

Who else touches your data
Current at publication · changes notified
AWS
Hosting, database, and object storage for recordings and documents.
Always
AWS Cognito
Single sign-on, when you enable it. Configured per workspace against your own user pool.
Tenant-selected
Meeting capture
Joins a call to record it. Processed in US East, US West, EU Central or AP Northeast, whichever your administrator picks.
Tenant-selected
Live session service
Real-time audio and video for meetings held inside the product.
Tenant-selected
AI providers
OpenAI, Anthropic or Azure OpenAI, under zero-retention terms. Point it at a model on your own approved endpoint instead and no provider is involved.
Tenant-selected
Your own systems
Salesforce, Microsoft 365, Gong and your data warehouse, read with credentials you supply and can revoke.
Tenant-selected

Anything marked tenant-selected is off until an administrator in your workspace turns it on and supplies the credentials. Nothing in this table receives your data by default.

Certification

We are not certified yet.

ferent.ai is a new company and we do not hold SOC 2 or ISO 27001. Implying otherwise with careful wording would only delay the moment you find out.

An audit report is a third party confirming our controls exist. Until we have one, we will show you the controls themselves, in a live session, with your security team asking the questions.

The controls, demonstrated

Row-level isolation, permission enforcement, the AI audit trail and the approval boundary can all be shown running against a live workspace.

Your questionnaire, completed

Send the questionnaire you use. We answer every question in writing, including the ones where the answer is no.

Architecture review

We will take your security team through the data model, the isolation boundary and the AI request path, and answer your engineers directly.

Controls you hold yourself

Run an approved model inside your own environment, set retention per data category, and mask sensitive values before processing. Each one reduces what you have to trust us with.

Contractual commitments

The commitments on this page go into the agreement: no training on your data, and human approval before anything reaches your customer.

Ask us about the roadmap

Ask where certification sits in our plans and you get a date, or an honest "not scheduled yet".

If certification is a hard gate for you today, tell us early and we will say so

Privacy policy

What we do with data, said in the order you’d ask.

Everything above is how the product is built. What follows is the policy itself. Where the honest answer is “it depends how your administrator configured it”, it says that instead of implying a guarantee.

Last updated 30 August 2026 · applies to this site and the platform
The short version
Do you train AI on our data?
No. Not our models, not anyone else’s, not in aggregate. Telemetry about our own software is separate and holds no customer content.
Do you sell or share it?
No. We disclose it only to the subprocessors named above, and only where you enabled them.
Who controls the records?
You do. For anything in your workspace we act on your instruction, including deletion.
Can you read our data?
Only under a support session you can see, with a stated reason and an expiry. There is no standing access.
Everything below is the same four answers with the conditions attached.
Who this covers

Four different relationships, four different answers.

A visitor to this site, someone whose employer bought the platform, the administrator who configured it, and a person who never chose us but appears in a customer's records. That fourth group has the least say and is usually left out of pages like this one.

People who visit this site
We are the controller

Contact details you send us, and ordinary analytics about pages and referrers. No profiling, no advertising pixels that follow you off the site.

People who use the platform
Your employer is the controller

Your account, your activity in the product, and whatever your organisation put in it. Your employer decides what is collected and how long it stays.

Administrators
Your employer is the controller

The same as any user, plus a record of configuration changes (roles, scoring, integrations, AI policy) attributed to the person who made them.

People who never chose us
Our customer is the controller

A contact at one of our customers’ customers, a meeting participant, a survey respondent. You did not agree to anything with us. Your rights sit with the organisation whose workspace holds the record, and the section below says how to reach them.

What we hold

Most of it is your customers' data, not yours.

The platform holds what a customer success team needs to do its job: accounts, contacts, conversations, support history, survey responses and revenue. You decide what goes in. We hold it on your behalf.

Category
What it is
Why we have it
Account and contact records
Company, people, roles, relationships, ownership.
Core to the product
Telemetry about our software
Which features get used, error rates, page timings. Describes the product, not your customers.
Operating the service
Conversations
Meeting recordings and transcripts, and email your administrator connected.
Only if enabled
Support and product history
Tickets, adoption readings from your own warehouse, usage trends.
Health scoring
Survey responses
NPS, CSAT and win/loss answers, under the privacy mode set when the survey was built.
Feedback
Commercial records
Contracts, quotes, renewals, revenue movements, compensation.
Core to the product
Platform activity
Sign-in events, permission denials, approvals, ownership changes, AI calls.
Audit and security
Website analytics
Pages, referrer, approximate location from IP, device type.
Site only

We do not buy personal data, we do not sell it, and we do not enrich your records from data brokers. What you see in the platform is what you or your connected systems put there.

Meetings and surveys

If you are in the room, this section is about you.

Recording is the most sensitive thing the platform does, and the person most affected often did not buy it. So the controls sit on the recording itself.

Consent is attested, not assumed

A recording cannot start without consent being recorded, under a policy your workspace sets. Every recording writes an audit entry.

You set how long it lives

Retention is configured per data category. Email can be summarised and the content deleted immediately afterwards.

Survey privacy is decided at design time

Identified, confidential or anonymous is chosen when the survey is built. An anonymous response cannot be attributed later, including by us.

Local law is your responsibility

Some jurisdictions require every participant to consent. The platform gives you the controls; whether you have the permissions is a decision only you can make.

Your rights

Who to ask depends on whose record you are in.

If you appear in a customer's workspace, that customer controls the record and we act on their instruction. Asking us directly will not be faster, but we will tell you who to ask and pass the request on the same day.

See what is held about you
If you are in a customer’s workspace, ask that organisation. Ask us and we will identify them and forward your request the same day.
Correct it
Same route. Corrections are made by the controller; we do not overrule a customer’s record.
Delete it
A customer can delete records and close a workspace. Its data is then removed on the schedule set in the agreement.
Object to AI processing
Records can be excluded from AI processing entirely, per category or per record. Ask the controlling organisation to set it.
Stop marketing email
Unsubscribe in any message, or write to us. Service and legal notices continue.
Take your data with you
Configuration and content export as portable packages, translations as CSV. We treat export as a feature, not a concession.

The rest of it

Where it runs

On AWS in US East. Meeting capture can be processed in US East, US West, EU Central or AP Northeast, chosen by your administrator.

International transfers

Processing happens where the platform is hosted, which is AWS in the United States. So if your organisation is outside the US, using the platform means a transfer to the US, and standard contractual clauses cover it where required. Two things can sit elsewhere: the recording region above, and the AI provider or endpoint your administrator selected. The security page names the current regions.

Retention

Held while your agreement is live and for the period it specifies afterwards. Individual categories can be set shorter by your administrator.

Cookies

What we need to keep you signed in, and analytics on the marketing site. No advertising networks, no cross-site tracking.

Our own vendors

Named individually above, not described as a category. If the list changes, customers are notified.

Legal requests

We disclose data when the law compels it. Where we are permitted to tell the affected customer first, we will.

Children

This is software sold to businesses. It is not for anyone under 16 and we do not knowingly collect their data.

Changes to this page

The date at the top changes when the text does, and we notify customers of material changes.

Ask us something specific.

Privacy questions go to a person. If yours is really a security question, the sections above have the controls and the subprocessor list.

Contact us about privacy Contact form Subprocessors, and where it runs Trust

Send us your questionnaire.

Better to run your security review in week one than discover it in week six. Both routes below open our contact form. Choose "a security review or documentation pack" and it reaches the right people.

Request the security pack Contact form Bring your security team to a call 45 min