Security & compliance
Achiral is built so your team’s memory, conversations, and automations stay inside one organization, on infrastructure you control.
Tenant boundary
Every Achiral organization runs on its own subdomain and gets a dedicated memory tenant. Inference, retrieval, and stored context all live inside that boundary. Nothing crosses to another organization, ever.
Inside the tenant, an org-wide Chiro and per-teammate executive assistants share context only where you’ve explicitly given access. Personal EAs cannot read across each other’s scopes.
The same boundary applies to every connector. See integrations for the inventory.
Encryption
Conversations, memory, and connector context are encrypted at rest in your tenant’s storage layer and encrypted in transit between every internal service. Tenant-scoped API keys authenticate clients without exposing shared secrets across organizations.
Data-residency controls are available on request for customers with jurisdictional requirements.
Access controls
Achiral honors the roles, groups, and access patterns your team already runs. Role-based access controls gate every connector, every action, and every fine-tuning round. Multi-factor authentication is available for every account.
Every approval, every action Chiro takes on a teammate’s behalf, and every change to a workflow is recorded in a tenant-scoped audit log you can review or export. The agentic loop ships with a human approval step before any outbound action runs — see how that feels on /features.
Compliance posture
Achiral is built for regulated SMB workloads. We use the language below intentionally — it reflects what we have actually shipped and what is in progress, not aspirational claims:
For service-level commitments, see the Service Level Agreement.
We’ll answer with what’s shipped, what’s in progress, and what we can sign for you.