Trust & Security

Infrastructure

Persona Lab is hosted on Render.com with automatic scaling, SSL/TLS certificates, and DDoS protection.

Encryption

All data is encrypted in transit (TLS 1.3) and at rest (AES-256). API keys stored with BYOK are encrypted with per-user keys.

Access Control

Role-based access control via OAuth 2.0. Support for Google and GitHub SSO.

PII Protection

Enterprise tier includes automatic PII detection and masking before data reaches AI providers.

Compliance

GDPR and CCPA compliant. Standard Contractual Clauses available. Data Processing Agreement available at /dpa.

Responsible AI

Your data is never used to train AI models. Conversations are processed in real-time and not stored by AI providers beyond their standard processing.