Security Model

Rembr is built with security-first principles. Your agent's memories are protected at every layer.

Tenant Isolation

Every agent gets a dedicated tenant with complete data isolation. Row-level security (RLS) is enforced at the database level.

Encryption

All data encrypted at rest (AES-256) and in transit (TLS 1.3). Embeddings and memory content are fully encrypted.

API Key Security

API keys are hashed before storage. Keys can be rotated at any time. Fine-grained permissions per key.

Audit Logging

Complete audit trail of all memory operations. Track who accessed what and when.

Data Protection

  • No training on your data — Your memories are never used to train models
  • Data residency — Choose where your data is stored (EU/US)
  • Right to deletion — Full data export and deletion on request
  • SOC 2 Type II — Enterprise-grade compliance (coming soon)

Infrastructure

  • • Hosted on isolated Kubernetes clusters
  • • Database-level row security policies for multi-tenant isolation
  • • Redis with authentication and TLS
  • • Regular security audits and penetration testing
  • • Automated vulnerability scanning

Questions about security?

We take security seriously. If you have questions or want to report a vulnerability, please reach out.

Contact our security team →