Security & Compliance

Enterprise-Grade Protection for Your Knowledge

At Tacivo, we understand that you're entrusting us with your organization's most valuable asset: expert knowledge. Security and privacy are built into everything we do.

Data Security

Encryption Everywhere

All data is encrypted in transit (TLS 1.3) and at rest (AES-256). Your interviews and playbooks are protected at every stage of capture, storage, and retrieval.

EU Data Hosting

Your data is stored exclusively on EU servers (Dublin), ensuring full compliance with European data protection standards. Your knowledge never leaves the EU.

Secure AI Processing

When we use AI to generate insights, your data is processed through enterprise AI infrastructure with a 30-day retention policy for security monitoring, then automatically deleted. Your data is never used to train AI models.

Privacy & Compliance

GDPR Compliant

Full compliance with EU data protection regulations, including:

  • Right to access and delete your data at any time
  • Clear consent mechanisms throughout the platform
  • Data Processing Agreements (DPA) available on request
  • Breach notification procedures within 72 hours as required by GDPR

Access Controls

Role-based permissions ensure only authorised users can access sensitive knowledge. Full audit logs track all system activity so you always know who accessed what and when.

Infrastructure Security

Secure Infrastructure

Built on enterprise-grade infrastructure (Supabase, Vercel) with 99.9% uptime SLA. Our providers maintain SOC 2 Type II compliance and regular independent security audits.

Continuous Monitoring

Continuous security monitoring and regular updates to address emerging threats. Automated alerts for any anomalous access patterns or system behaviour.

Secure Authentication

Industry-standard authentication with support for SSO/SAML integration on Enterprise plans. Multi-factor authentication available across all plans.

Responsible AI

Built with Responsible AI Principles

We use enterprise-grade AI infrastructure with built-in safety measures and compliance controls. Our AI providers handle model governance and regulatory compliance on our behalf, so you benefit from rigorous oversight without added complexity.

Human-in-the-Loop Design

All AI-generated content can be reviewed and edited before finalization. Experts maintain full control over what knowledge is captured and how it's presented. The AI assists — humans decide.

Transparent AI Interactions

Users always know when they're interacting with AI. We clearly distinguish between AI-assisted features and human expertise throughout the platform, ensuring trust and clarity at every step.

Documentation

The following documents are available on request:

  • Privacy Policy
  • Terms of Service
  • Data Processing Agreement (DPA)
  • Security Questionnaire

Questions About Security?

Our team is happy to answer any security or compliance questions, complete security questionnaires, or arrange a technical discussion ahead of your evaluation.