Enterprise-Grade Security

Your Data. Your Keys. Your Audit Trail.

RelayLaunch is built for firms that handle sensitive deal data. Every layer, from database to AI inference, is designed for confidentiality, integrity, and auditability.

Encryption at Rest & In Transit

All data encrypted with AES-256 at rest (Supabase) and TLS 1.3 in transit. API keys stored with row-level encryption.

Bring Your Own Key (BYOK)

Use your own Anthropic API key. Your prompts never touch our servers when BYOK is active. Zero data retention on AI calls.

Signed Verdict Audit Trail

Every council verdict is Ed25519-signed with a per-tenant keypair. Verify provenance, detect tampering, and prove chain of custody.

Row-Level Security

Supabase RLS enforced on every table. Tenants can never access another tenant's data. Enforced at the database layer, not the application.

PII Redaction

Personally identifiable information is scrubbed from error reports (Sentry) and telemetry (Langfuse) before export. No emails, tokens, or passwords leak to third-party services.

Rate Limiting & DDoS Protection

Five-tier rate limiting (Upstash Redis) protects every API endpoint. Vercel Edge + Cloudflare WAF provide infrastructure-level DDoS mitigation.

Compliance & Certifications

SOC 2 Type II
Roadmap (Q4 2026)
GDPR Compliant
Active
Data Processing Agreement
Available on request
Penetration Testing
Quarterly (via automated stress testing)
Vulnerability Disclosure
security@relaylaunch.com
HIPAA BAA
Enterprise tier

Why Firms Trust RelayLaunch

Founder-led. Accountability and follow-through matter here

Open-source council engine (CouncilVerse). Inspect the reasoning

Every recommendation shows its reasoning. No black boxes

Important concerns are preserved, not hidden

Constitutional checks prevent unauthorized pricing, push, or contact actions

Deletion shield protects critical infrastructure files from accidental removal

Questions about security?

We're happy to walk through our security posture, provide a DPA, or discuss enterprise requirements.