Security & Trust

Security & trust at Behavry.

The independent system of record for autonomous behavior — verifiable by anyone, trusted by design.

Download the Whitepaper → See the open verifier
SOC 2 & ISO 27001 — control mapping complete Offline-verifiable Decision Trace security@behavry.ai
01 — THE OPEN-VERIFIER PROMISE

Verify any Decision Trace offline. No Behavry in the loop.

Every audit event is Ed25519-signed and SHA-256 hash-chained to the one before it. Export bundles carry a Merkle root over the full timeline. Point our open verifier at a public key you pin yourself, and check the record against a customer-supplied trust anchor — no Behavry API, no Behavry database, nothing to take on faith but the math.

tools/verify_event.py
air-gapped
$ python tools/verify_event.py \
--bundle behavry-audit-export.json \
--trust-anchor behavry-trust-anchor.json
✓ manifest signature verified (Ed25519)
✓ merkle root matches 1,204 events
✓ hash chain intact — 0 breaks
✓ per-event signatures verified
No live KMS · no Behavry DB · runs entirely on your machine
SIGNED
Every event carries a per-row Ed25519 signature — not just the export bundle.
HASH-CHAINED
Each event hashes the one before it. Edit history anywhere, and every hash after it breaks.
TRUST-ANCHORED
You pin the public key. We never ask you to trust our service to check our own work.

See how a Decision Trace is built →

02 — SECURITY OVERVIEW

Five properties any security review starts with.

03 — COMPLIANCE STATUS

Where we actually stand — no badges we haven't earned.

We only show a "certified" badge when it's literally true. Below is the honest state of our compliance program today.

SOC 2
Trust Services Criteria
CONTROL MAPPING COMPLETE

CC6–CC8 (Security) mapped, with supporting CC9 (Availability) controls. Independent Type II audit is on the roadmap — not yet complete.

ISO/IEC 27001:2022
Information security management
MAPPED

A.5.24, A.8.2, A.8.15, A.8.16, A.8.24 mapped to shipped controls. Certification has not been pursued yet.

Framework crosswalks
Buyer & regulator frameworks
LIVE

FSI (OCC SR 11-7 · NYDFS 23 NYCRR 500 · SEC 206(4)-7 · SEC 204-2 · Reg S-P) · OWASP ASI · HITRUST AI · CIS AI/ML · NIST AI RMF · PCI DSS v4.0 · EU AI Act · GDPR · HIPAA.

We do not claim SOC 2 or ISO 27001 certification. "Mapped" and "control mapping complete" mean our shipped controls satisfy the named clauses today — not that an independent auditor has certified them. When that changes, this page changes with it.

Compliance mappings last reviewed April 2026 · Page published July 21, 2026.

04 — DATA HANDLING

What we actually capture — and what we never do.

METADATA, NOT CONTENT

Tool name, action, resource path, policy decision, DLP pattern + severity, and a SHA-256 hash of the input — never the prompt, file contents, or query results themselves.

CONTENT CAPTURE IS OFF BY DEFAULT

The MCP proxy and the OpenAI / Anthropic model proxies never see your prompts or completions — only metadata about them. A compromised Behavry database leaks governance signal, not your data.

ENCRYPTED IN TRANSIT AND AT REST

TLS on every hop; AES-256-GCM for stored payloads; short-lived, RS256-signed tokens for every request.

RETENTION IS YOURS TO SET

Configure your own retention window. Erasure requests are honored by anonymizing records in place, so the hash chain — and its tamper evidence — stays intact.

Full detail in our Privacy Policy →

05 — SUB-PROCESSORS

Who else touches the data.

VendorWhat it touches
AWSCloud infrastructure & hosting
Google CloudInfrastructure & workspace services
MicrosoftEnterprise SSO (Entra ID / OIDC) integration
DigitalOceanInfrastructure & hosting
ClerkAdmin identity & authentication (OIDC)
AnthropicClaude model API — metadata-only proxy, no prompt/completion content
OpenAIGPT model API — metadata-only proxy, no prompt/completion content
Timescale (TimescaleDB)Audit log database

Full sub-processor list with data-flow detail is available under NDA — security@behavry.ai.

06 — DOCUMENTATION & QUESTIONNAIRES

Get what your review actually needs.

Security Whitepaper

The full architecture, integrity model, and compliance mapping in one branded PDF.

Download PDF →

SIG-Lite / CAIQ

Available on request for teams running a standard vendor questionnaire.

Request →

Technical documentation

API reference, integration guides, and deployment options.

docs.behavry.ai →
07 — RESPONSIBLE DISCLOSURE

Found something? Tell us first.

Report suspected vulnerabilities to security@behavry.ai. Details for automated tooling are published at /.well-known/security.txt per RFC 9116.

We acknowledge every report within 2 business days.
Good-faith testing against your own account or data, without service disruption or data destruction, will not trigger legal action from us.
We'll keep you updated as we investigate and remediate, and credit researchers who ask to be named.
Every finding — internal or external — is tracked to remediation and, where applicable, independently re-tested.
System status
Live uptime, incidents, and maintenance windows.
status.behavry.ai →

Security review in progress?

Skip the first three emails. Talk to us directly.

Email Security →