Security for every team

Your data, your rules. Kept private, controlled from source to answer, and shared on your terms.

Permission‑aware answers

Permission‑aware answers

Respects your groups so people only see what they’re allowed to see.

Privacy by default

Privacy by default

Data is encrypted with AES-256 and TLS 1.3, using strict access controls.

Control & oversight

Control & oversight

Fine‑grained admin settings, audit logs and policies for full governance.

Enterprise‑ready

Enterprise‑ready

SSO, SCIM and GDPR‑aligned practices to reduce risk.

We prioritise data privacy, information security and legal compliance in every step.

GDPR compliant

Your data is protected under strict European standards with transparent collection processes and full user control over personal information.

ISO 27001 certification

myReach is an ISO 27001 certified company.

ISO/IEC 27001 endorses our commitment and adherence to best practices in Information Management Security (ISM), ensuring optimum data protection for our users. This certification further promises the safeguarding of your data against potential security threats.

TLS 1.3 encryption

Your data is encrypted aligning with industry-tested and accepted standards. We use TLS 1.3 to encrypt and protect your data in transit. The SSL certificate for the myReach platform uses a 2048-bit RSA key.

The mix of ciphers suites and TLS protocols provides a balance of strong encryption for browsers and backward compatibility for legacy clients.

AES-256 bit encryption

myReach uses AES-256 bit encryption to secure your database connection credentials and data stored at rest.

Dedicated private server

Your data can be hosted on your cloud infrastructure in a dedicated private server, within your own environment and under your control.

You decide who has access with your own identity, MFA and IP allow-lists.

No foundation model training

myReach holds contractual agreements with AI subprocessors which prohibit the use of customer data to train their models.

We use Retrieval-Augmented Generation (RAG) to generate responses. We don't use your data to train any models.

Single sign‑on

We offer Single Sign-On (SSO) authentication.

This allows your team to use their existing company accounts to access myReach, reducing friction and password risk.

Google CASA certification

myReach is Google CASA certified (Cloud Application Security Assessment), meaning it has successfully passed a rigorous third-party audit of its authentication, encryption, incident response, and infrastructure protection to ensure full compliance with Google's stringent security and privacy standards for user data.

Trusted by leading companies

faqs

Your questions, answered

Don't hesitate to contact us if you can't find what you're looking for.

How does myReach maintain a high standard of information security?

What measures are implemented to control access to my data and core systems?

How is my data protected while being stored and transmitted?

How does myReach ensure compliance with data protection regulations?

Is my data used to train any AI models?

How does myReach protect my data against accidental destruction or loss?

What controls do I have over who can use my Genie (AI Agent)?

How does myReach maintain a high standard of information security?

What measures are implemented to control access to my data and core systems?

How is my data protected while being stored and transmitted?

How does myReach ensure compliance with data protection regulations?

Is my data used to train any AI models?

How does myReach protect my data against accidental destruction or loss?

What controls do I have over who can use my Genie (AI Agent)?

How does myReach maintain a high standard of information security?

What measures are implemented to control access to my data and core systems?

How is my data protected while being stored and transmitted?

How does myReach ensure compliance with data protection regulations?

Is my data used to train any AI models?

How does myReach protect my data against accidental destruction or loss?

What controls do I have over who can use my Genie (AI Agent)?

How does myReach maintain a high standard of information security?

What measures are implemented to control access to my data and core systems?

How is my data protected while being stored and transmitted?

How does myReach ensure compliance with data protection regulations?

Is my data used to train any AI models?

How does myReach protect my data against accidental destruction or loss?

What controls do I have over who can use my Genie (AI Agent)?