Security
Local-first, tamper-evident and air-gap capable by design.
SecurityHow VerifAIer earns trust: security, privacy and responsible AI in one place.
Six documents, each reachable from here and each maintained in its own right. This page routes to them and states what is verifiable; it does not restate them.
Local-first, tamper-evident and air-gap capable by design.
SecurityWe hold almost nothing. Your operational data never leaves your perimeter.
PrivacyBecause it is local-first, VerifAIer processes no customer operational data.
DetailsEvidence over opinions, explainable results, human oversight.
ApproachCoverage mapped to EU AI Act, NIST AI RMF and ISO/IEC 42001.
ComplianceThe terms governing use of the website and platform.
TermsThe security story starts with topology. Most questions reviewers ask are answered by where the software sits rather than by a policy document.
It runs as a container or a plain process on infrastructure you control. There is no managed control plane to depend on and no account to create.
The software does not phone home. Nothing about your operations is reported to us, because there is nowhere for it to be reported to.
The only outbound calls are to an AI provider you configure. With the built-in mock provider there are none at all, which is how the published proof was produced.
Prompts, responses and repository content are processed where the software runs. They are not transmitted to VerifAIer, and we operate no service that could receive them.
When one capability reads another's record it keeps a reference. The capability that produced a fact remains the only authority on it.
Personal and owner-private surfaces are readable by their owner. Widening that is an explicit act with its own record, never a side effect.
Where the product ingests material that may contain credentials, they are masked on the way in and never written to storage.
Evidence verifies offline, without connectivity and without a key held by us. An auditor can check it years later with the files alone.
Organisation scope is derived from the authenticated session rather than accepted from a request, so a cross-tenant read is not expressible.
Guarantees are only useful next to their limits, so both are listed.
The same inputs produce the same evidence identifiers. A result that cannot be reproduced is a defect, not a variation.
A capability that cannot answer is reported as unavailable. Missing input becomes an explicit unknown; it never becomes a pass.
Evidence is content-addressed and tamper-evident. It is not cryptographically signed, and the site does not describe it as though it were.
VerifAIer maps evidence to control frameworks and computes posture. It does not certify compliance, and it is not legal advice.
A trust centre that lists only what a vendor holds teaches a reader to assume the rest. The platform can generate evidence and map it to control frameworks. That is a capability of the product; it is not a certification of the company, and the two are named apart here so neither can be read as the other.
sso is a catalog flag with no enforcement point.This list is maintained in the same pass as the Security page and says the same thing, because a disclosure that disagrees with itself across two pages is worse than one that is missing from both.