Grayn handles sensitive performance data, creative assets, and customer segments. Security isn't a feature. It's the foundation.
OAuth scopes are read-only. We never have write access unless you grant it for approved campaign actions — and even then, every write is gated by human approval.
Every customer workspace is fully isolated at the database level. No data ever crosses customer boundaries. Not for training, not for benchmarks, not for "aggregate insights."
AES-256 at rest. TLS 1.3 in transit. OAuth tokens use envelope encryption and rotate automatically. Keys managed in AWS KMS.
Your campaigns, conversations, and documents only answer your team's questions. We never train foundation models on customer data. Your data improves your Grayn, not ours.
Every question, data pull, and action is logged with user, timestamp, and reasoning. Exportable audit trail on Enterprise plans.
Disconnect integrations and tokens revoke immediately. Delete your workspace and all data is purged within 30 days, including backups. No dark archives.
Compute, storage, KMS keys, database hosting.
Foundation model inference for natural language.
Fallback inference & embeddings. Zero data retention.
Messaging surface. Grayn operates as a Slack App.
Vector database for the Cortex memory. Isolated namespaces.
Infrastructure monitoring. Metadata only, no customer data.
For complete subprocessor list, data flow diagrams, or to request our SOC 2 Type II report, DPA, or BAA, email security@grayn.ai.
The eight questions we hear most from security reviews. More? Email security@grayn.ai.
Most security reviews close in under a week. We move at your pace.