Your data security is our priority
Contextuar touches your team's email, your business context, and the systems your business runs on. We protect all of it — and back it up with the certifications, controls, and infrastructure to prove it.
Your data belongs to you
Control what we process, own what we hold, and know exactly how we treat your privacy.
Control.
You control which emails and documents we process, how they're processed, and who can see them. You can remove any data from our system at any time.
Ownership.
You own your data. We don't sell it. We don't use it to train models. We don't share it beyond what's required to provide the service.
Privacy.
We collect only what we need to run the product, keep it secure, and delete it on request. Read the full privacy policy for details.
Audited and certified
Independent third-party audits and certifications validate the controls protecting your data.
SOC 2 Type II.
Independent third-party Service Organization Controls audits assess our security, availability, processing integrity, confidentiality, and privacy controls over time — not just at a single point. Customers may request a copy of our current SOC 2 Type II report by emailing [email protected].
CASA certified.
Contextuar is CASA (Cloud Application Security Assessment) certified per Google's requirements for applications that access Google Workspace data. CASA certification includes regular penetration testing by an independent third party.
Secure access at every layer
Every sign-in, session, and permission is governed by the same controls your IT team already trusts.
Single sign-on.
SSO for both Google Workspace and Microsoft Entra ID (formerly Azure AD). No separate password to manage.
Multi-factor authentication.
Passwordless or multi-factor authentication for every user.
Granular permissions.
Control who can see, send, approve, or act on what — at the user, team, and workspace level. The same permission model that governs your data also governs the agents acting on it.
Built on enterprise cloud infrastructure
Contextuar runs on Microsoft Azure with the hardening, monitoring, and backup discipline of an enterprise-grade platform.
Infrastructure.
Contextuar runs on Microsoft Azure with data encryption in transit and at rest, network hardening, continuous vulnerability scanning, and logging and intrusion detection across the stack.
Continuity.
User data is backed up every five minutes, encrypted, and distributed across multiple redundant storage locations. Our Disaster Recovery Plan is tested at least once a year.
Security built into how we operate
The people behind Contextuar are screened, trained, and granted only the access their role requires.
People.
Every Contextuar employee undergoes background checks, annual security awareness training, and adheres to strict industry-standard confidentiality agreements.
Least privilege.
Access to cloud infrastructure and customer data is strictly limited to the authorized employees whose role requires it. Every access is logged and reviewed.
How Contextuar handles AI
Contextuar uses large language models from established AI providers — OpenAI, Anthropic, and Google — to power the analysis, suggestion, and automation capabilities of the product.
You control which models are used.
During onboarding, we work with you to select the LLM providers that fit your security requirements, data residency needs, and performance expectations.
Customer data is not used to train AI models.
What you put into Contextuar stays in Contextuar.
Prompts are isolated per customer.
Data sent to an AI model for processing is scoped to that specific request — not retained, not shared between customers, not used to improve foundation models.
Contact our security team
For security questions, vulnerability reports, or to request the current SOC 2 audit report, email [email protected].
We respond to all legitimate security inquiries within two business days. Vulnerability reports are acknowledged within one business day.