LENQAROby Fortunato AI

Security & Trust

Every statement below is a record in a claim register with an evidence status. Statements we cannot yet evidence — certifications, service-level commitments, customer references, production verification — are withheld rather than implied.

Read the labels. Implemented — not production-verified means the control exists and is tested in the development environment; no production deployment exists yet. Designed and Planned describe intent, not availability.

IdStatementEvidence statusCategory
TC-001Consequential actions are authorized server-side; the browser and model output are never trusted for authorization.Implemented — not production-verifiedsecurity
TC-002Every tenant-owned record carries organization ownership and cross-tenant access is denied at the service layer.Implemented — not production-verifiedsecurity
TC-003Privileged effects fail closed when authorization, tenant, audit or evidence prerequisites are absent.Implemented — not production-verifiedsecurity
TC-004Credentials are stored encrypted, referenced by opaque identifiers, and never returned to a caller or placed in model prompts.Implemented — not production-verifiedsecurity
TC-005Audit and evidence records are append-only and separate provenance (where a requirement came from) from proof (what actually happened).Implemented — not production-verifiedgovernance
TC-006Kill switches can halt governed execution for providers, tools, integrations, seats and projects.Implemented — not production-verifiedsecurity
TC-007Model providers are interchangeable adapters; changing a provider never changes what a seat is authorized to do.Implemented — not production-verifiedgovernance
TC-008Every running environment reports the exact source commit it was built from.Implemented — not production-verifiedoperations
TC-009Backup posture is derived from recorded backup and restore-check evidence, not from configuration alone.Implemented — not production-verifiedoperations
TC-010Enterprise identity federation (SSO / SCIM).Plannedidentity
TC-011Responsible disclosure programme.Designedtrust
TC-020Accessibility: WCAG 2.2 AA-compatible practices are targeted; no formal conformance audit has been performed.Designedtrust

Not claimed

We do not currently hold SOC 2, ISO/IEC 27001 or HIPAA attestations, do not offer an uptime SLA, and do not operate a production environment. Trust and procurement documents (DPA, subprocessors, privacy and retention terms) are being prepared and will be published only after legal review and Founder authorization.

Responsible disclosure

Report a suspected vulnerability through the contact route. Programme terms are designed and not yet approved.