Enterprise-grade security for your proposals

We know your proposals contain sensitive company information. Security is not a feature — it's the foundation.

Your documents are never used to train AI models.

Your data stays yours. We use AI to generate proposals from your content, but your documents are never shared with third parties or used to improve general AI models.

Security practices

Encryption at Rest & in Transit

All data is encrypted using AES-256 at rest and TLS 1.3 in transit. Your proposals and documents are protected at every stage.

Isolated Infrastructure

Your data is logically isolated from other customers. Each organization's documents and proposals are stored separately with strict access controls.

SSO & Role-Based Access

SAML-based SSO for Business and Enterprise plans. Granular role-based access control (owner, admin, member, viewer) ensures the right people have the right access.

Audit Logging

Comprehensive audit logs track every action — document uploads, proposal generations, user invitations, and permission changes.

Penetration Testing

Regular third-party penetration testing and vulnerability assessments ensure our defenses stay ahead of emerging threats.

Data Residency

Infrastructure hosted in SOC 2 compliant US data centers. Enterprise customers can request specific data residency configurations.

Data handling

Transparency about how we store, process, and protect your data.

Your documents are never used to train AI models

Your data is isolated from other customers

Documents can be permanently deleted at any time

We retain data only as long as your account is active

Full data export available on request

Automatic deletion within 30 days of account closure

Compliance

SOC 2 Type II

In Progress

Audit initiated Q1 2026

GDPR

Compliant

Full GDPR compliance for EU customers

CCPA

Compliant

California Consumer Privacy Act

Security questions?

Our team is happy to answer any security or compliance questions.

security@bidauthor.com