Least privilege, always
An employee reaches only what its role needs. Nothing else exists to it.
Security & Compliance
AI employees with real access need real boundaries: least privilege, a human on anything sharp, and a log of everything.
The principle
An employee reaches only what its role needs. Nothing else exists to it.
Production, security, infrastructure — it stops and waits for a person.
Every action, approval and refusal logged — “why did it do that” always has an answer.
Human control
Not a setting you switch on. It is how the product works.
The request, the diff, the reasoning, the approver and the decision — captured together, ready for the auditor’s favourite question.
Platform
Including the free one.
TLS 1.2+ everywhere, HTTPS-only with HSTS.
AES-256 on every store that holds your code or memory.
Your memory is yours alone. Every request authorized against your tenant.
Google, Microsoft, Apple or enterprise SAML — lifecycle stays in your IdP.
Owner, Admin and Developer govern who hires, grants and approves.
Credentials live in a broker, never in an employee’s memory. It can’t leak what it doesn’t hold.
Every action logged, attributable, reviewable end to end.
AWS, managed Postgres, private networking, stateless services.
On Enterprise: your cloud account, your infrastructure, your model.
Your data
Your code and memory do your work — never train shared models, never pool with another customer. Your knowledge staying yours is the whole product.
Inspect it, correct it, take it with you. It follows you between plans and doesn’t evaporate if you leave.
Multiple LLM providers; Enterprise brings its own model or endpoint. Which third party sees a prompt is a choice you make.
Tell us your requirements and we’ll answer plainly. Deletion: see the Privacy Policy or write to us.
Compliance
Standards & compliance
“In progress” means not yet certified — we won’t call it anything else until an auditor does. The AWS infrastructure underneath is certified; that’s a different claim, kept separate on purpose. Ask us for current status and documentation.
Subprocessors
Kept current. We tell you before it materially changes.
| Provider | Purpose | Applies to |
|---|---|---|
| Amazon Web Services | Hosting, compute, managed database, object storage and content delivery | Website and product |
| LLM providers | Model inference for AI employees. Configurable per organization; Enterprise can bring its own model or endpoint. | Product |
| Stripe | Payment processing for paid plans. Card details go to Stripe, never to us. | Product (paid plans) |
| Web3Forms | Delivers website contact form submissions to our inbox | Website |
| Google Analytics | Website usage measurement, loaded only after you accept cookies | Website |
Scroll the table sideways on a narrow screen.
This website
The cheapest possible signal of whether a vendor bothers.
Responsible disclosure
admin@edgex11.com, “Security” in the subject, steps to reproduce.
Within two business days, with updates until it’s fixed.
Give us reasonable time to remediate; we’ll credit you if you’d like.
Only your own data, no service degradation, no social engineering. Good-faith testing is welcome.
Security FAQ
No. Your code, documents and organizational memory are used to do your work, not to train shared or third-party models, and they are never pooled with another customer’s data. Your memory is isolated to your tenant.
No. Production deployments, security-sensitive changes, infrastructure changes and customer-facing messages all require explicit human approval. The employee prepares the change and asks; a person decides. Both the request and the decision are recorded.
Only what you grant, scoped to its role, least-privilege by default. Credentials are held in a broker rather than stored in the employee’s memory, so its memory cannot leak a secret even in principle.
Not yet — both programs are in progress, and we would rather tell you that than imply otherwise. EdgeX11 runs on AWS infrastructure that is itself SOC 2 and ISO 27001 certified, and our practices are GDPR-aligned. Contact us for current documentation and status.
Yes, on Enterprise. Private deployment puts EdgeX11 in your own account on dedicated infrastructure, with the option to bring your own model, so neither code nor memory leaves your environment.
Every organization is a distinct tenant. Operational data and the organizational memory are isolated per tenant, and every request is authorized against the tenant it belongs to. There is no shared memory between customers.
Email admin@edgex11.comwith “Security” in the subject. We aim to acknowledge within two business days. See responsible disclosure above for the ground rules.
Next step
Then ask us for whatever it doesn’t cover.
No credit card required. Nothing ships without your approval.