BundAI logo
Security

Built for trust

Every BundAI workspace runs on a security model designed for creators, agencies and enterprise teams.

How does BundAI keep my data safe?

BundAI encrypts data in transit with TLS 1.3 and at rest with AES-256. OAuth tokens live in an encrypted vault and use the minimum scopes required. Database access is locked down with row-level security, every workspace action is audit-logged, and we never train AI models on creator content. We align with GDPR and are actively pursuing SOC 2 Type II.

Security controls

Encryption everywhere

TLS 1.3 in transit, AES-256 at rest, encrypted vault for OAuth tokens.

Least-privilege access

Row-level security on every table. Role-based access on every action.

No model training

We never train AI on creator content. Your data is yours.

SSO & MFA

SAML SSO, SCIM provisioning, and multi-factor auth on Enterprise.

Audit logs

Every workspace action is logged with actor, IP and timestamp.

GDPR-aligned

DPA on request, scoped data processing, EU-friendly defaults.

Frequently asked questions

All data is encrypted in transit (TLS 1.3) and at rest (AES-256). OAuth tokens are stored in an encrypted vault and scoped to the minimum permissions required.

Need a DPA or security review?

Start free. No credit card required.