Public trust baseline
SECURITY
Veracity is building a release-control product for consequential, data-backed AI workflows. This page describes the public security posture and the boundary of what the marketing site does | it is not a certification or audit report.
Data handling
- The public walkthrough uses precomputed, synthetic examples. It does not process customer production data.
- The Request access form is for business contact information and a high-level workflow description, not for artifact uploads or regulated records.
- Customer product processing, retention, deletion and permitted data use are defined in the applicable commercial and data-processing agreements.
Security & system safeguards
- Release decisions are derived from deterministic claim verification, source evidence and customer-configured rules.
- Evidence records and release decisions remain cryptographically bound to the specific artifact under review.
- The public marketing site is isolated from customer execution environments and is non-custodial and zero-trust by design.
Compliance status
Veracity does not represent this page or its public demo as a SOC 2 report, ISO/IEC 27001 certification, HIPAA compliance determination, legal advice or regulatory approval. Current control evidence and any independent attestations are provided through qualified diligence when available.
Responsible disclosure
To report a suspected security issue, contact security@trustveracity.com. Please do not include customer data, credentials or exploit payloads in an initial email. We will establish a safer exchange channel when needed.