Security · trust · methodology

What we can prove today.

"Unimpressive on paper."
Defensible in a meeting.
01 · The provable list

Seven things a CFO can verify in five minutes.

No SOC 2. No ISO 27001. No SSO. No KMS. No bug-bounty. Not "in progress", just left off. When paying customer demand justifies the audit cost, we'll start one. Until then, here's what's actually true.

i.Encryption

TLS 1.3 in transit. AES-256 at rest.

Every connection runs TLS 1.3 with strict cipher policies. HSTS is enforced. There is no fallback. Stored documents are encrypted at rest with AES-256.

testssl.sh · attera.io HSTS preload-eligible
ii.Data residency

EU-only. Never replicated outside.

Documents are processed and stored exclusively on hardware we operate in Belgium, inside the EU. The local LLM that reads them runs on the same Belgian infrastructure, reached over a private network. There is no cross-border replication. No US edge cache. No CDN that mirrors your PDFs.

Belgium · physically operated EU-only · no replication
iii.Inference

The AI runs on a server we operate.

Inference is served from a server we operate in Belgium, reached over a private, end-to-end encrypted network. Tailscale only coordinates that connection (key exchange and NAT traversal); the traffic is encrypted end to end, so its servers never see your documents. Your documents are never sent to OpenAI, Anthropic, Google, Mistral, or any external LLM provider. Those models cannot be trained on your content because no third party ever sees it.

Local-LLM · EU hardware No third-party AI API
iv.GDPR

Your documents never reach a third party. The DPA is public.

A standard Data Processing Agreement is published in full. Read it before you sign up; we countersign on request before any paid plan starts. We process your documents only to provide the service; you remain the data controller; we don't share with third parties beyond the one sub-processor named below.

v.Sub-processors

One sub-processor. Public list. Advance notice.

Tailscale, for private network coordination between the machines we operate. No customer data transits Tailscale-controlled servers. It only handles key exchange and NAT traversal. That's the entire list. If we ever add another, you'll hear about it before it ships.

Own hardware · Belgium Tailscale · coordination only
vi.Anonymise on screen-share

One-click blur for live demos.

When you screen-share with auditors, board members, or anyone who shouldn't see specific names or figures, hit the anonymise toggle. All extracted personal data (names, emails, addresses, identifiable amounts) blurs in place across every workspace view. The underlying data is unchanged; only the rendering is masked.

One toggle · all views No data altered
vii.Incident response

Three founders. Best-effort 24-hour response.

We don't have a 24/7 NOC and we won't pretend to. We commit to best-effort acknowledgement within 24 hours of a confirmed incident, named contact in the same email, and a written post-mortem inside two weeks. SOC 2, advanced RBAC, and SSO are on the roadmap. We'll start that work when paying customer demand justifies it, not before.

security@attera.io Named contact · contact@
02 · The full sub-processor list

One entry. Updated when it changes.

If another sub-processor is ever added, we'll notify every paying customer by email at least 30 days before any customer data flows through it.

ProviderRegionPurpose
Tailscale Inc. Coordination only Private network coordination between the machines we operate in Belgium. Tailscale's servers handle key exchange and NAT traversal. Customer data does not transit them.

No CDN. No edge cache. No analytics provider. No third-party LLM API. No marketing-tag manager.

03 · How to verify

Verify any of the above before you sign anything.

Don't take our word for it. The whole point of the list is that it's checkable. Each claim above is something a careful buyer can confirm independently in under five minutes, without an NDA or a sales call. The same approach Attera's product takes with your financial figures is the one we take with our security posture: cite, don't promise.

Anything not on the list isn't quietly true. It's not true. If you need a control that isn't here, tell us and we'll be honest about whether and when it ships.

01
Test the TLS configuration

Run testssl.sh attera.io or visit ssllabs.com. Expect TLS 1.3, A or A+ grade, HSTS preload-eligible.

02
Read the sub-processor list

One entry: Tailscale, for network coordination only, and your documents don't transit it. Published here with no NDA.

03
Read the DPA before signing

Full text is public. No NDA. No "request access" form.

04
Ask us to show the inference machine

We'll join a call from the workstation. The model file is on disk; we'll walk you through where your documents enter and leave the process.

Have a security question we didn't answer? Email us.

Privacy
Privacy policy