Permission-aware · encrypted · never trained on
Security and privacy built into every answer
For an assistant that searches your whole company, security cannot be an afterthought, it has to be the product. InSearch is permission-aware by design, encrypted in transit and at rest, built to SOC 2 practices, and never trained on your data.
Your rules, enforced on every question
The rollout unlock
Permission-aware by design
This is the single thing that lets you roll InSearch out across the whole company. It respects the access rules you already have, on every question, for every person.
- Item-level permissions are inherited from each connected source, Drive, Slack, Notion, Confluence, Gmail, Jira and Salesforce.
- Those permissions are enforced at query time, per person, on every single question.
- InSearch creates no new permissions and exposes nothing new. Your existing rules stay exactly as they are.
- If a person cannot already open a document in its home app, it never appears in their answer or its citations.
Finance lead asks
Q4 revenue is on track at 92% of target1, with the board deck attached.
New hire asks the same question
No documents you can access mention this. Ask your manager for the finance handbook.
Restricted file never surfaced
One question, two answers, your permissions decide
How your data is protected
Your data answers your team\'s questions, and nothing else
We never train on your data
Your content is used for one purpose, to answer your own team\'s questions, and nothing else. We never use it to train models, and your knowledge is never shared with other customers. Your data stays yours.
Encrypted and access-controlled
Data is encrypted in transit and at rest. Connections to your apps are read-only and scoped, so InSearch reads to find answers and never writes back. Access to your environment is limited to what is needed to run the service.
SOC 2 practices
We follow SOC 2 practices across security, availability and confidentiality. Encryption, access controls and permission enforcement are built into how the product works, not bolted on, so the standards you expect are part of every answer.
Our commitments
What we hold ourselves to
These are the standards we build and operate InSearch to. Security and IT teams can verify each one before they ever roll it out.
Your permissions, never overridden
Item-level access controls from every source are inherited and enforced at query time. We never override, widen or replace the rules you already set.
Read-only by default
Every connection reads to find answers and never writes back to your systems. InSearch cannot change, move or delete anything in your apps.
Grounded, cited answers
Answers are grounded in your own connected content with citations to the exact source docs, so people can verify what they read rather than trust a black box.
Data minimized and scoped
We access only what is needed to answer questions and operate the service, and we keep that access controlled and limited.
Security questions
The questions security teams ask first
Roll out company-wide search with confidence.
Permission-aware by design, encrypted in transit and at rest, built to SOC 2 practices, and never trained on your data. Security is part of every answer, not an afterthought.
Permission-aware · encrypted in transit and at rest · SOC 2 practices · never trains on your data