Security at Synoro
Enterprise-grade security
Synoro uses layered security controls, strict data handling, and auditable AI workflows to protect your clients' data and your firm's operations.
SOC 2 Type II — in progress
No model training on your data
Full tenant isolation
Every AI action logged & auditable
Encrypted at rest & in transit
US data hosting
AI PRIVACY
Automation that stays accountable, isolated, and inspectable.
INFRASTRUCTURE
Encryption, segregation, MFA, and US-only hosting for sensitive finance workflows.
OPERATIONAL READINESS
Testing, response, backups, and documentation for security review and diligence.
AI Privacy
Your data is used to serve your business — not to train someone else's model.
No third-party model training
Your data is never used to train external or third-party AI models. Your firm's own approved corrections build your private memory — used only for your books, never shared.
Full data isolation
Strict tenant separation across every customer.
Traceable AI
Every agent action is logged and auditable.
No selling or sharing
Company and client data is never shared with third parties.
Data deletion
Remove your data at any point.
Transparent by design
AI steps show sources, changes, and rationale.
Secure by design
No credential storage
We never store your credentials. Access via revocable tokens only.
Encrypted at rest
AES-256 and HMAC across all stored data.
Encrypted in transit
HTTPS/TLS on every connection.
Security operations
Penetration testing
Regular third-party tests and vulnerability scanning.
Incident response
Rehearsed program with rapid triage and notification.
Encrypted backups
Daily backups with geographic redundancy.
Reviewing Synoro for your finance stack?
Our team can walk you through controls, certifications, and diligence materials.