Security at Brai
How we protect the software, services and information entrusted to Brai.
Last updated: 2026-09-28
1. Secure engineering
Security and privacy are designed into our architecture, development process and ongoing operations — not added as a final checklist.
- EU-based hosting for primary application data
- Encryption in transit using TLS
- Database row-level access rules
- Least-privilege access for people and systems
- Managed secrets storage
- Strong authentication where a product requires verified identity
- Regular dependency updates and maintained backups
2. Responsible disclosure
Report a suspected vulnerability to info@brai.build. We aim to acknowledge reports within five business days.
- Describe the issue and the steps needed to reproduce it
- Do not access, change or copy another person's data
- Do not disrupt services, degrade availability or use destructive testing
- Give us a reasonable opportunity to investigate and fix the issue before public disclosure
3. Security contact
Security reports: info@brai.build. Please use a clear subject such as “Security report”.