Security

Security-first architecture.

Per-tenant isolation. Read-only integrations by default. Human approval on every board-visible number. Full audit logging. We built Dragline for operators who need trust before they need software theater.

Architecture

How we protect your data.

Data Isolation

Per-tenant data isolation

Separate schemas per tenant. Encryption at rest. Your data never shares storage with another company's data.

Read-Only

Read-only ERP integrations

We never touch your ERP's transaction layer in year one. Read-only by default. Write access requires explicit authorization.

Approval Gates

Human approval gates

AI drafts the numbers. Your controller approves. Nothing hits the board without a human sign-off. The board trusts because a person signed.

Audit Log

Full audit logging

Every action is timestamped and attributed. Who changed what, when, and why. Full traceability for compliance and internal review.

SOC 2

SOC 2 Type I roadmap

In progress. We are building compliance into the architecture from day one, not bolting it on after.

Infrastructure

Vercel-hosted, US data

Infrastructure hosted on Vercel. All data stored in the United States. 256-bit encryption in transit. Enterprise-grade CDN and DDoS protection.

Questions about security?

We are happy to walk through our architecture, data handling policies, and SOC 2 roadmap in detail.

Book a call →