Trust is the product.
Below is what the platform enforces today, and what we have committed to next. The two are kept separate on purpose.
Enforced today. No qualifiers.
Tamper-evident records
Every record carries a SHA-256 digest taken at seal time. Any alteration to any constituent produces a different digest.
Encryption
In transit and at rest.
Access control
Role-based access. Every action against a record is itself recorded and attributable.
Retention
Retention windows are set by policy and enforced by the platform, not by convention.
Independent verification
An exported evidence pack can be verified without Sigilith running, by a party who does not trust us.
Human decision boundary
Automation prepares decisions and escalates ambiguity. Final adverse decisions are taken by a named person.
Not yet true. Stated plainly.
We would rather a security reviewer learn this here than discover it in diligence.
Customer-managed keys
BYOK with an HSM path.
SOC 2 Type II
Independent audit of security controls.
ISO/IEC 42001
AI management system certification.
Found something? Tell us directly.
We accept security reports from researchers and customers, and will acknowledge receipt. Please include enough detail to reproduce the issue.
No cookies. No third parties.
None
Nothing persists on your device after you close the tab.
None
No external script sees your visit, so none can follow it elsewhere.
Our own
First-party, on our infrastructure. No IP stored, form fields excluded, GPC honoured.
We measure how this site is read so we can write it better. A company asking institutions to trust its handling of evidence should be able to say exactly how it handles its own, so the method is written out in full, not summarised. Read the privacy notice.
Bring your security review.
We would rather answer a vendor-risk questionnaire early than late. Send it with your first message.