Enterprise security

Four pillars that keep your data, your model, and your reputation safe

Security is the reason most enterprises can't adopt AI. OmniPaws was built backwards from the security requirements of regulated industries.

Pillar 1

Data Isolation — single-tenant, single-region

Every OmniPaws deployment runs on its own remote VPS. There is no shared database, no shared LLM endpoint, no shared object store.

  • Dedicated VPS per client, region of your choice
  • LUKS full-disk encryption, SSH-only access, key-rotation policy
  • Outbound firewall — agent can only call the integrations you approve
  • Bring-your-own-cloud option for regulated workloads
  • Per-action risk tier configured in MEMORY.md
  • Approve from your phone — Slack, WhatsApp, or web
  • Full audit trail of who approved what and when
  • Hard kill-switch to pause the agent instantly
Pillar 2

Human-in-the-Loop — by design, not by exception

Actions are categorised by risk. Anything that touches money, customer commitments, or external communication waits for an explicit human approval.

Pillar 3

Zero Public-Model Training — by contract and by code

Your conversations, documents, and SOPs are never used to train any public LLM — and never leave your VPS.

  • DeepInfra inference with explicit no-retention flag
  • No fine-tuning on your data — current or future
  • Contractual zero-training clause in every MSA
  • Periodic third-party audit of inference logs
  • Per-token, per-tool, per-action cost breakdowns
  • Replayable audit logs for every conversation
  • Alerts on anomalous behaviour or spend spikes
  • Optional SIEM export to your existing stack
Pillar 4

Complete Visibility — telemetry you can read

You always know what the agent is doing, what it's costing, and what it touched.

Designed for regulated industries

From financial services to healthcare, OmniPaws is built to satisfy the questions your CISO will ask.

GDPR-ready

Data residency controls, DPA on request, and per-region deployments.

SOC-friendly

Single-tenant VPS maps cleanly to SOC 2 CC6 logical-access controls.

Audit replay

Every agent action is logged with timestamps and inputs for compliance review.

Want a security deep-dive for your CISO?

We'll send a one-page architecture & threat-model doc tailored to your stack. No NDA required to start.