Security

Factory AI you can trust.

The rest of the site makes the promise. This page is the specifics: what is separated, who sees what, and how it is protected.

Read-only
Approved
Who sees what
Owner
Team lead
Member
On the record
Where your data sits

One system, protected at every layer.

How the pieces fit, and where the controls sit.

Illustrative map. Every control on it is described on this page.

Private by design

Private by design.

Access starts with your approval: you approve each connection before it reads, and a person approves each message before it is sent.

Factory 1
Its own data
Factory 2
Its own data
Factory 3
Its own data

Each customer separate, its own data, never mixed.

Who sees what

One brain, many views.

The whole company runs on one brain, but nobody sees the whole brain. Each person sees exactly the slice you give them.

Change someone's role and their view changes with it. Remove them and their access ends.

Owner · sees across
One company brain
Orders
Sees its own work
Production
Sees its own work
Quality
Sees its own work
Suppliers
Sees its own work
Day to day

How it is protected day to day

Encrypted in transit

Data moves between your systems and IndusCore AI over encrypted connections.

Access that ends

When someone leaves or changes roles, their access is cut off centrally, right away.

Approvals on the record

Every approval and every send is logged, so you can always see who decided what, and when.

Tracked at every level

How your own team touches the data and how outside parties interact with it is all on the record. You see it, and you control what flows into the AI.

The road to SOC 2

Our security program is built on the SOC 2 Trust Services Criteria.

Trust Services Criteria
Security
Availability
Confidentiality
Where things stand
  • Oracle CloudSOC 2 Type 2Attested
  • VercelSOC 2 Type 2Attested
  • IndusCore AIFirst independent reportPreparing

The infrastructure under us, Oracle Cloud and Vercel, already holds SOC 2 Type 2 attestations. Ours is in preparation.

In place today
Role and field level access control, set by your management
Human approval before anything reaches a buyer
Approvals and sends kept on the record
Encrypted connections between your systems and IndusCore AI
Runs on SOC 2 Type 2 attested infrastructure (Oracle Cloud, Vercel)

What IndusCore AI never does

Never sells or shares your data
Never gives your buyers a login
Never sends anything to a buyer without a person on your team approving it
Never mixes your data with another customer's
Never uses your data to train AI models
Never writes to your systems unless you asked for it
Straight answers

No. Each department sees its own work. Cross-department visibility exists only for the people you give it to, like the owner or a general manager.

Yes. Many factories start with one department watching its own orders, then widen access as trust grows.

It means the practices on this page are being formalized and independently audited. We will publish the report when it is done, and nothing before.

The interface is served from Vercel. The engine and the database run on Oracle Cloud Infrastructure. Both providers hold SOC 2 Type 2 attestations, and storage is encrypted at rest by default.

No. It reads. Write-back exists only if you ask for it, and nothing is written without your approval.

Ask us anything on this page.

Bring your hardest data question to a demo. We will show you the controls live, on a real screen.