Security first.

Agents that remember people should be clear about data. Here is what Humaner processes, what we save, and what we never touch.

Encryption & infrastructure

Managed infrastructure with encryption, isolation, and least-privilege access at every layer.

Encryption in transit

TLS 1.2+ on all API and dashboard traffic.

Encryption at rest

Postgres and Redis encrypt data at rest on managed infrastructure.

Authentication

OAuth and email auth with secure, httpOnly session cookies.

Secrets management

API keys and provider credentials live in environment variables.

Retention & purge

Default 90-day mail retention with scheduled deletion.

Built into every agent

Humaner links each control directly into your agents — enforced before a single token is generated.

  1. 01

    Strict answer gate

    No knowledge match, no guess — the agent asks or declines.

  2. 02

    Agent guardrails

    Forbidden topics enforced in every system prompt.

  3. 03

    Domain allowlist

    Keys and origins you explicitly approve.

  4. 04

    Rate limits

    Per-IP, per-session, and per-agent throttling before LLM calls.

  5. 05

    Workspace isolation

    Knowledge, chats, and embeddings never cross tenant boundaries.

Data scope

Processed to run your workspace and deliver support — never sold, and never used to train third-party foundation models.

  • Mail threads

    Messages, timestamps, and session metadata for mailbox delivery.

  • Cross-session memory

    Context your agent keeps when memory is enabled for a visitor.

  • Workspace & account data

    Email, organization profile, team members, and agent settings.

  • Knowledge you upload

    Docs, URLs, PDFs, and embeddings Companion retrieves from.

  • Workspace activity

    Assignment, resolutions, and usage metrics inside your workspace.

  • Credit card numbers

    Billing runs through Polar — Humaner does not store card data.

  • Personal health information

    Blocked by industry guardrails; agents decline medical advice.

  • Selling conversation data

    We do not sell or license your customers' messages.

  • Third-party model training

    Your content is not used to train shared foundation models.

Questions about security?

We are happy to walk through architecture, data flows, and controls. For privacy-specific requests, see our Privacy Policy, DPA, and Terms of Service.