Encryption everywhere
TLS 1.3 in transit, KMS-backed keys at rest, and tenant-isolated secrets — aligned with your InfoSec checklist.
Trust & governance
Security, compliance, and responsible-AI posture aren't afterthoughts at Splendens. ISO 27001 / SOC 2-aligned controls, role-aware audit logs, and model evaluation pipelines that survive a regulator's questions.
Built with teams who operate at scale
The same rigor we apply to models applies to how they're hosted, accessed, and governed — so legal, risk, and engineering stay aligned.
TLS 1.3 in transit, KMS-backed keys at rest, and tenant-isolated secrets — aligned with your InfoSec checklist.
SSO / OIDC, RBAC, and scoped service accounts so humans and agents only touch what they must.
VPC peering, dedicated tenancy, and on-prem inference where regulation demands it.
GDPR-aware flows, HIPAA-aware deployments for healthcare, and SOC 2 Type II–aligned controls with audit trails.
Shipping fast doesn't mean shipping blind. We embed evaluation, oversight, and traceability into the release path — not as an afterthought.
Evaluation & benchmarks
Task-specific scorecards, regression suites on golden sets, and domain-expert rubrics — not a single accuracy number.
Adversarial review
Prompt injection and jailbreak testing, plus scenario libraries mapped to your abuse policies.
Human oversight
Configurable review queues when confidence is low or stakes are high — auditable decisions.
Lineage & reproducibility
Dataset versioning, model cards, and deployment manifests so every answer traces back to a known artifact.
Controls matrix
We've shipped Splendens products into healthcare, fintech, and education enterprises — every one scrutinised our posture. Here's the audit-ready summary, plus the security FAQ that usually shortens the vendor-review cycle by a couple of weeks.
| Control area | Splendens posture | Evidence on request |
|---|---|---|
| Identity & access | Stateless JWT + role-based access on every Splendens service | Eductate SecurityConfig, BloomCRM RBAC, JIT access reviews quarterly |
| Data residency | MySQL / Postgres + S3-compatible buckets, region-pinned per customer | DPA addendum specifies region; on-prem option for regulated workloads |
| Encryption | TLS 1.3 in transit, AES-256 at rest, KMS-managed keys | Cloud-provider KMS or Hashicorp Vault, customer-managed keys on request |
| Audit logging | Tamper-evident audit log on every write across BloomCRM-connected products | Immutable storage, 7-year retention default, exportable to your SIEM |
| Vulnerability mgmt | Dependabot + Snyk + monthly patch SLA, quarterly penetration tests | Latest pen-test summary available under NDA |
| AI governance | Eval harness + red-team runs every release; provider-agnostic architecture | AI provider switch is an env var; no model lock-in, full prompt logs |
| Privacy | GDPR-aligned + India DPDP-aware, DSR endpoints on customer-facing surfaces | DPIA template, consent journals, and processor list on request |
| Business continuity | RPO ≤ 1h, RTO ≤ 4h on production tiers; multi-AZ by default | Tested DR drills twice a year, runbooks shared with customer SRE |
Where is customer data stored?
Region-pinned at provisioning. India workloads land in ap-south-1 / asia-south1 by default; EU/US/APAC available on request. On-prem is supported for regulated workloads — we ship the same containers everywhere.
Do you train AI models on our data?
No. Splendens is provider-agnostic; the LLM call is a stateless inference round-trip with the providers' data-processing agreements honoured (no training on customer prompts). Self-hosted open models are an option when zero data egress is required.
Can we bring our own keys / model / cloud?
Yes to all three. Customer-managed keys via KMS, model swap by env var, and the same Spring Boot + Next.js + FastAPI stack runs on AWS, GCP, Azure, or on-prem.
What happens if we need to leave?
Data export endpoints are part of every Splendens product (CSV / JSON / SQL dump). The stack is open — Spring Boot, MySQL, Postgres, Next.js — so there's no proprietary runtime to migrate off.
Tell us about your domain, constraints, and timelines. We'll respond with a concrete path — workshop, pilot scope, or referral if we're not the right fit.
Typical response within two business days · NDAs welcomed