Avowex
Trust & Security

The trust layer for AI agents —
held to the bar it enforces.

Customers run Avowex so their agents can't go rogue, their rules can't be silently changed, and every action is provable. We operate our own platform to that same standard — and we're on a clear path to prove it with independent audits.

In progress

SOC 2 Type II

Audit underway. Report available under NDA on completion.

On roadmap

ISO 27001

International information-security management certification.

On roadmap

ISO 42001

The first AI-management standard — fitting for a trust layer.

Live

Tamper-evident audit

Every decision hash-chained and independently verifiable.

Live

Responsible disclosure

A clear path for researchers to report security issues.

Scheduled

Third-party pen test

Independent penetration testing on a recurring cadence.

We state status honestly: live means in production today, in progress / scheduled means actively underway, on roadmap means planned and dated internally. We don't claim certifications we don't hold.

The threat we govern

Autonomous agents introduce a new attack surface. Security researchers have named it — and every risk below is an action problem, which is exactly the layer Avowex controls.

🧠

Memory & context poisoning

Attackers corrupt an agent's context to change its behavior. Avowex enforces policy on the resulting action, regardless of how the agent was nudged.

Control → policy-gated actions
🛠️

Tool misuse

An agent is tricked into abusing the access it's been granted. Avowex pauses risky tool calls for approval before anything happens.

Control → human-in-the-loop gate
⬆️

Privilege & autonomy escalation

An agent reaches beyond its intended scope. Avowex bounds what each agent may do and records every attempt.

Control → least-privilege + audit

Mapped to the OWASP Agentic AI threat taxonomy and the NIST AI Risk Management Framework — so our protections line up with a recognized industry model, not marketing language.

How we protect you

Defense in depth — from the edge to the audit trail — with special attention to the one thing that matters most for a trust layer: your rules can't be changed without a trace.

🔒

Tenant isolation

Every request is scoped to one organization. One customer can never read or change another customer's data or rules.

⛓️

Tamper-evident audit

Each decision is cryptographically chained to the last, so the action history is append-only and any tampering is detectable.

📝

Rule & policy integrity

A customer's rules can't be changed without authentication, authorization, and a tamper-evident record of every change.

🔑

Access control

API keys stored hashed — never in plaintext — plus enterprise SSO and separation of privileged access.

🛡️

Encryption & secrets

Encryption in transit and at rest, verified webhooks, and secrets kept out of source code.

📈

Incident response

Every unhandled error is captured for fast response, backed by a documented incident-response runbook.

Strengthening continuously: policy versioning & rollback, dual-control approval, MFA on privileged access, and live integrity/anomaly alerting are on our active hardening roadmap.

Independently verified

Buyers shouldn't take our word for it — that's the point of third-party attestation. Here's where we are and where we're headed.

Phase 1 · now

SOC 2 Type II

The attestation US enterprise security reviews ask for by name.

In progress
Phase 2

ISO 27001

The international gold standard for an information-security management system.

On roadmap
Phase 3

ISO 42001 + NIST AI RMF alignment

Certified AI management — a differentiator for an AI-governance platform.

On roadmap
Ongoing

Penetration testing & responsible disclosure

Responsible disclosure is live; recurring independent pen tests are scheduled.

Scheduled

Need our security documentation?

Customers and prospects can request our current evidence pack — security overview, sub-processor list, DPA, and our SOC 2 report (under NDA when available) — to support your own SOC 2, ISO, or vendor-risk review.

Request evidence pack

Existing customers can also pull compliance evidence directly from the Compliance page in your console.

Sub-processors

The third parties we rely on to deliver the service. We keep this list current and notify customers of material changes.

ProviderPurposeRegion
RenderApplication & database hostingUS
StripeBilling & payment processingUS
AnthropicLLM for the website assistantUS
WorkOSEnterprise SSO & identityUS
HubSpotCRM (sales & ambassador contacts)US

This is a representative list maintained for transparency; the authoritative, dated sub-processor list is included in the evidence pack.

Report a vulnerability

Found a security issue? We want to hear from you. Email security@avowex.com — we'll acknowledge, investigate, and keep you updated. Please give us reasonable time to remediate before public disclosure.

View security.txt