Trust & Transparency
Honest documentation of our security practices, data handling, and what we can verify today.
What We Can Verify Today
Transparent status of our security practices — what's real, and what's next.
Open Source Codebase
All security-critical code is MIT licensed and publicly auditable on GitHub.
Expected: Available now
EU AI Act Alignment
Full coverage of Article 5 prohibited practices through the THSP protocol.
Expected: Available now
Formal Certifications
Security documentation and internal procedures established. Formal certifications and external audits in progress.
Expected: 2026
Compliance & Standards
How Sentinel aligns with major regulatory frameworks.
Data Practices
What we collect, what we don't, and your rights.
What We Collect
- Agent configurationsencrypted
- Execution logsanonymized
- Usage metricsaggregated
- Wallet addressespublic keys only
What We DON'T Collect
- LLM API keyszero-knowledge
- Conversation contentsnever stored
- Personally identifiable infono PII
- Emails or passwordswallet auth only
Your Rights
Infrastructure Overview
Where your data lives and how it's protected.
Frontend
Vercel, Global CDN
Edge-optimized delivery
Database
Supabase, US/EU
Row-level security
Agent Runtime
Modal.com, US
Isolated containers
Encryption
AES-256-GCM + Ed25519
Client-side key derivation
Questions About Trust & Compliance?
Get in touch with our team for security inquiries, compliance questions, or vendor assessments.