Security
Built for trust
Every BundAI workspace runs on a security model designed for creators, agencies and enterprise teams.
How does BundAI keep my data safe?
BundAI encrypts data in transit with TLS 1.3 and at rest with AES-256. OAuth tokens live in an encrypted vault and use the minimum scopes required. Database access is locked down with row-level security, every workspace action is audit-logged, and we never train AI models on creator content. We align with GDPR and are actively pursuing SOC 2 Type II.
Security controls
Encryption everywhere
TLS 1.3 in transit, AES-256 at rest, encrypted vault for OAuth tokens.
Least-privilege access
Row-level security on every table. Role-based access on every action.
No model training
We never train AI on creator content. Your data is yours.
SSO & MFA
SAML SSO, SCIM provisioning, and multi-factor auth on Enterprise.
Audit logs
Every workspace action is logged with actor, IP and timestamp.
GDPR-aligned
DPA on request, scoped data processing, EU-friendly defaults.
Frequently asked questions
All data is encrypted in transit (TLS 1.3) and at rest (AES-256). OAuth tokens are stored in an encrypted vault and scoped to the minimum permissions required.