Security Policy

How we protect your systems, data, and AI operations

Our Security Commitment

We take security seriously. Our approach combines technical controls, operational procedures, and transparency to ensure your AI systems remain secure and trustworthy.

Key Security Measures

Data Protection

Least-privilege access controls, encryption in transit and at rest, and secure key management

Evidence Signing

Cryptographic signatures on all governance evidence for tamper detection

Audit Logging

Comprehensive logging of all policy decisions and system events

Real-Time Monitoring

Continuous security monitoring and anomaly detection

Incident Response

If a security issue is discovered, we commit to:

  • Acknowledge and investigate within 48 hours
  • Provide regular updates on remediation progress
  • Notify affected parties within commercially reasonable timeframes
  • Document lessons learned and implement preventive measures

Responsible Disclosure

Found a security vulnerability? We welcome responsible disclosure.

Security Contact:

security@orchintel.com

Please include steps to reproduce and your contact information. We commit to acknowledge within 48 hours.

Security Updates

This policy is reviewed quarterly and updated as our security posture evolves. Last updated: October 2025.