Boring where it counts.
You are trusting Textent with your client conversations. Here is exactly how that trust is handled, in plain language, and only where the code backs it.
The ledger,
area by area.
What we do, where, and what it means for your data. No badges, no claims the code does not support.
- In transitTLS everywhere
Every connection to Textent, and from Textent to the platforms, is encrypted in transit.
- At restAES-256-GCM for credentials
Platform tokens and session credentials are encrypted with AES-256-GCM before they touch the database.
- IsolationWorkspace-scoped data
Every record belongs to exactly one workspace, and every query is scoped to it. Your conversations are not visible to any other business.
- PaymentsStripe holds the cards
Payment pages are hosted by Stripe. Card numbers never touch Textent servers, and payouts go directly to your connected Stripe account.
- Sign-inSessions + two-factor
Server-side sessions with modern password hashing, and two-factor authentication available on every account.
- AIYour data is not training data
AI features send only the thread context needed to draft or summarize. We do not train models on your conversations.
- HostingEU infrastructure
The platform runs on EU-based servers, with media on distributed object storage encrypted at rest.
- BackupsDaily, off-site
The database is backed up daily to separate off-site storage, so a bad day stays a bad day, not a lost one.
- EnterpriseSSO / SAML, roles, audit logs
Enterprise workspaces add single sign-on (SSO/SAML), advanced roles and permissions, and audit logs. Talk to us about rollout for your organization.
Least drama
Security is a practice, not a page of badges. We prefer boring, provable measures over impressive-sounding ones.
Least data
We store what the product needs to work and nothing speculative. What we hold, we can explain.
Honest limits
If you need a control we do not have yet, we will say so plainly rather than sell around it. Ask us anything below.
Security researchers
are welcome here.
Report privately and we respond fast. Please do not test against workspaces you do not own.
hello@textent.site · see also the legal center.
Client work needs
client trust.
Encrypted tokens at rest, isolated workspaces, your data stays yours. Only the claims the code supports.
- Encrypted at rest
- Isolated per workspace
- Export any time