Security & Trust

Your data never leaves
your perimeter.

GenBI is built for organizations where data privacy isn't optional. The model comes to your data — your data never goes to the model.

Security built into the architecture

Not bolt-on. Not a checkbox. Security is how GenBI is designed.

Your Infrastructure, Always

GenBI runs inside your VPC or on-premise environment. Your raw data is never transmitted to Celvian servers — not for training, not for processing, not at all.

Encryption at Rest & in Transit

All data is encrypted with AES-256 at rest. All API and browser traffic uses TLS 1.3. Encryption keys are managed by your team, not ours.

Row-Level Access Control

Granular permissions ensure every user sees only the data they're authorized to see. Roles, groups, and field-level masking are all configurable.

Full Audit Logs

Every query, every export, every configuration change is logged with user, timestamp, and context. Immutable audit trails for compliance and forensics.

No Model Training on Your Data

The GenBI language model is pre-trained and shipped to your environment. Your data is never used to train or fine-tune any model — ours or anyone else's.

Compliance Roadmap

SOC 2 Type II audit in progress. GDPR-compliant by design. HIPAA deployment guide available. We publish our compliance status openly.

Choose your deployment

Both options keep your data fully under your control.

Cloud (VPC)

Dedicated VPC in your AWS, Azure, or GCP account. Data never crosses account boundaries.

  • Single-tenant
  • Your cloud account
  • Your encryption keys
  • Network isolation

On-Premise

Full deployment inside your data center. Zero external network dependencies.

  • Air-gapped capable
  • Your hardware
  • No external calls
  • Custom networking

Ready to see it for yourself?

We'll walk you through the architecture and answer every security question your team has.

Request a Security Demo
Security & Trust — GenBI by Celvian | Celvian