Trust Center

You own your data. We own keeping it governed.

XecSuite is a governed AI operating layer, which means control and ownership are the product — not an afterthought. For a 3PL, that also means the IT and security review is the real gate, so here is exactly how your data, your tenant, and your actions are handled.

You own your data

Company memory, evidence, embeddings, and transcripts are yours. They are exportable anytime in open formats and deleted on termination — no lock-in, no hostage data.

  • Open-format export of memory, evidence, embeddings, and transcripts
  • Export available at any time, not just at offboarding
  • Full deletion on termination

Your data never trains shared models

Your operating context stays inside your private tenant. It is never used to train external or shared models — not ours, not a vendor’s.

  • No client data used to train external or shared models
  • Private context stays scoped to your tenant
  • Hybrid routing keeps high-volume work on private models

Tenant isolation enforced by Postgres RLS

Every tenant is isolated at the database layer using Postgres row-level security, so one company’s context can never bleed into another’s.

  • Row-level security (RLS) enforced per tenant
  • Permission-aware access by user and role
  • Clear labels for live, manual, demo, stale, or missing data

Sovereign Canadian hosting available

For engagements that need it, data can be hosted on sovereign Canadian infrastructure, with connectors scoped per stack that terminate on disconnect and private endpoints per connector.

  • Sovereign Canadian hosting available
  • Connectors scoped per stack, with least-privilege access that terminates on disconnect
  • Dedicated private infrastructure and ZDR agreements on Enterprise

Approval-gated actions

XecSuite drafts and recommends; your team decides. Anything outbound or irreversible requires human sign-off before it happens.

  • Human approval before anything outbound or irreversible
  • Drafts and recommendations, not autonomous actions
  • Source-backed answers with citations, confidence, and freshness

Hosted model adapters are managed infrastructure

Private model adapters are XecSuite-managed infrastructure tuned to your operation. They are not transferable and are destroyed on termination — while your underlying data stays exportable and yours.

  • Adapters are XecSuite-managed infrastructure, not transferable
  • Adapters and models destroyed on termination
  • Per-company budget governance over hybrid model routing

Every one of these controls is scoped and confirmed during implementation — so your IT and security team knows exactly where your data lives, who can see it, and what happens when an engagement ends, before anything goes live.

Talk to us about controls

Need residency, retention, or isolation specifics for your scope?

Tell us how your company needs to handle data. We will map the exact controls — residency, RLS isolation, export, deletion, and approval gates — to your engagement before anything goes live.

Prefer email? Contact nick@xecsuite.com or max@xecsuite.com.