Skip to content
AutomationSecurityAbout Log in Get a demo

Your data security is our priority

Contextuar touches your team's email, your business context, and the systems your business runs on. We protect all of it — and back it up with the certifications, controls, and infrastructure to prove it.

Privacy & data ownership

Your data belongs to you

Control what we process, own what we hold, and know exactly how we treat your privacy.

tune

Control.

You control which emails and documents we process, how they're processed, and who can see them. You can remove any data from our system at any time.

account_balance

Ownership.

You own your data. We don't sell it. We don't use it to train models. We don't share it beyond what's required to provide the service.

privacy_tip

Privacy.

We collect only what we need to run the product, keep it secure, and delete it on request. Read the full privacy policy for details.

Read the privacy policy →

Compliance & certifications

Audited and certified

Independent third-party audits and certifications validate the controls protecting your data.

verified

SOC 2 Type II.

Independent third-party Service Organization Controls audits assess our security, availability, processing integrity, confidentiality, and privacy controls over time — not just at a single point. Customers may request a copy of our current SOC 2 Type II report by emailing [email protected].

shield

CASA certified.

Contextuar is CASA (Cloud Application Security Assessment) certified per Google's requirements for applications that access Google Workspace data. CASA certification includes regular penetration testing by an independent third party.

System access

Secure access at every layer

Every sign-in, session, and permission is governed by the same controls your IT team already trusts.

login

Single sign-on.

SSO for both Google Workspace and Microsoft Entra ID (formerly Azure AD). No separate password to manage.

lock_person

Multi-factor authentication.

Passwordless or multi-factor authentication for every user.

shield_lock

Granular permissions.

Control who can see, send, approve, or act on what — at the user, team, and workspace level. The same permission model that governs your data also governs the agents acting on it.

Infrastructure

Built on enterprise cloud infrastructure

Contextuar runs on Microsoft Azure with the hardening, monitoring, and backup discipline of an enterprise-grade platform.

cloud

Infrastructure.

Contextuar runs on Microsoft Azure with data encryption in transit and at rest, network hardening, continuous vulnerability scanning, and logging and intrusion detection across the stack.

backup

Continuity.

User data is backed up every five minutes, encrypted, and distributed across multiple redundant storage locations. Our Disaster Recovery Plan is tested at least once a year.

Organization

Security built into how we operate

The people behind Contextuar are screened, trained, and granted only the access their role requires.

groups

People.

Every Contextuar employee undergoes background checks, annual security awareness training, and adheres to strict industry-standard confidentiality agreements.

key

Least privilege.

Access to cloud infrastructure and customer data is strictly limited to the authorized employees whose role requires it. Every access is logged and reviewed.

AI model usage

How Contextuar handles AI

Contextuar uses large language models from established AI providers — OpenAI, Anthropic, and Google — to power the analysis, suggestion, and automation capabilities of the product.

You control which models are used.

During onboarding, we work with you to select the LLM providers that fit your security requirements, data residency needs, and performance expectations.

Customer data is not used to train AI models.

What you put into Contextuar stays in Contextuar.

Prompts are isolated per customer.

Data sent to an AI model for processing is scoped to that specific request — not retained, not shared between customers, not used to improve foundation models.

Contact

Contact our security team

For security questions, vulnerability reports, or to request the current SOC 2 audit report, email [email protected].

We respond to all legitimate security inquiries within two business days. Vulnerability reports are acknowledged within one business day.