Security

Security for firms where the data is the product.

Tenant-isolated deployments, end-to-end encryption, and a typed-object data layer that makes cross-firm leakage architecturally impossible.

Security built for your most sensitive mandates.

01 / Isolation

Tenant-isolated deployments.

Every firm runs in its own isolated Palantir Foundry deployment, a sealed black box. Your data, your ontology, your agents. Zero cross-customer access.

02 / Training

No model training on your data.

Customer data is never used to train foundation models exposed to other customers. Vendor models are called under enterprise terms that prohibit retention.

03 / Encryption

Encrypted everywhere.

AES-256 at rest, TLS 1.3 in transit. Customer-managed keys available on enterprise deployments.

04 / Audit

Auditable by design.

Every agent action, query, and output is logged with full lineage. Every figure in a memo links back to its source document.

05 / Access

Ontology-bound access.

Agents cannot reach data outside the typed-object graph they have been granted. A Comp Match cannot leak across funds. The type system enforces it.

06 / Deployment

On-prem or private cloud.

Deploy on a private Foundry instance your team controls. For NDA-protected deal data, local models keep nothing leaving your network.

Compliance posture

Where we stand today.

Antonine
SOC 2 Type II

Type II controls are live. We're in the observation window.

Pending — targeting late 2026
Underlying platform
Palantir Foundry

SOC 2 Type II, ISO 27001, and FedRAMP High authorized. We deploy on top of this base.

Inherited
Data protection
AES-256 + TLS 1.3

Encryption at rest and in transit on every deployment. CMK available on enterprise tier.

Live
Deployment
Private cloud / on-prem

Optional dedicated instance on your VPC, with local models for NDA-protected data.

Available
Data protection
GDPR

Data-processing and subject-rights controls in build.

Pending — targeting late 2026
The next move

Defensible decisions.
Defense-grade infrastructure.

Every decision linked to its source, every output auditable, every agent bound by the ontology's type system. The same guarantees that protect classified workflows protect your fund.