AegisIQ's security posture, infrastructure controls, compliance roadmap, and data governance practices for enterprise customers.
Contact Security TeamAegisIQ is built on enterprise-grade cloud infrastructure with entity-level data isolation at every layer.
Deployed on Netlify — SOC 2 Type II certified CDN with global edge network and automatic HTTPS enforcement.
Neon PostgreSQL — SOC 2 Type II, GDPR-ready. Continuous backup with point-in-time recovery. Entity-scoped row isolation enforced at API layer.
Supabase Storage — SOC 2 compliant. Certificate PDFs and supporting documents stored with access-controlled signed URLs.
Every API call enforces entity_id scoping at the middleware layer. Users can only access their assigned entity. SUPER_ADMIN access is separately audited.
Customer equity data is encrypted in transit and at rest using current industry standards.
| Layer | Standard | Status |
|---|---|---|
| Data in transit | TLS 1.2+ enforced. HSTS with 2-year max-age and preload. HTTP connections redirected to HTTPS. | ACTIVE |
| Data at rest — database | AES-256 encryption via Neon PostgreSQL managed encryption. | ACTIVE |
| Data at rest — documents | AES-256 encryption via Supabase Storage managed encryption. | ACTIVE |
| Authentication tokens | JWT signed with HS256. 8-hour expiry. Server-side secret — no public key exposure. | ACTIVE |
| Password storage | bcryptjs with salt rounds=10. Passwords are never stored in plaintext or logged. | ACTIVE |
All access is role-scoped and entity-scoped. No cross-entity data access is possible for non-admin roles.
| Role | Scope | Capabilities |
|---|---|---|
| SUPER_ADMIN | Platform-wide | Full access to all entities. All actions audited separately. |
| ENTITY_ADMIN | Assigned entity only | Full ledger management: issue, transfer, cancel, certificate lifecycle, user management. |
| MANAGER | Assigned entity only | Read and create transactions. Cannot delete records or manage users. |
| VIEWER | Assigned entity only | Read-only access to cap table, shareholders, and certificates. |
Every ledger mutation is recorded with a full audit trail. Records cannot be modified or deleted by any user role.
User ID, user email, role, entity ID, action type, resource type, resource ID, IP address, timestamp. All share issuances, transfers, cancellations, certificate actions, and user management events.
Every AI query is logged with user, entity, mode, message, response, tools called, token counts, and latency. The Copilot cannot execute ledger mutations — it is read-only by design.
Cap table views show an as-of timestamp. Review attestations track when a human last verified the ledger. STALE data (no review in 90+ days) triggers a visible platform warning.
Every share transfer, cancellation, and certificate action can attach supporting documents (stock power, letter of instruction, notary verification). Documents are linked to the ledger record permanently.
Current status and roadmap for enterprise compliance certifications.
| Standard | Status | Notes |
|---|---|---|
| SOC 2 Type II | IN PROGRESS | Audit program initiated. Observation period underway. Report expected Q3 2026. Available to enterprise prospects under NDA upon completion. |
| GDPR-Ready Architecture | AVAILABLE | Entity-scoped data isolation, data export capability, and deletion workflows. Data Processing Agreement (DPA) available for enterprise customers upon request. |
| Delaware DGCL § 224 | DESIGNED FOR | Platform workflows are designed around Delaware electronic stock ledger requirements. Not a substitute for legal counsel review of corporate records. |
| CCPA | AVAILABLE | Data export and deletion capabilities available. Privacy policy covers California resident rights. |
| Penetration Testing | PLANNED | Annual third-party penetration test planned for Q2 2026. Results available to enterprise customers under NDA. |
We take security reports seriously and respond within 48 hours.
Email security@aegisiqstockledger.com with a description of the vulnerability, reproduction steps, and potential impact. We will acknowledge within 48 hours and provide updates throughout the resolution process.
In the event of a security incident affecting customer data, affected customers will be notified within 72 hours of confirmed breach identification, consistent with applicable legal requirements.
Recovery Point Objective (RPO): < 1 hour via Neon continuous backup. Recovery Time Objective (RTO): < 4 hours. Tested annually.
AegisIQ does not aggregate, resell, train AI models on, or analyze your equity records for any purpose other than operating the platform for your benefit.
Export your full cap table, ledger history, and shareholder records at any time in standard formats. You are never locked in.
Your equity records are not used for benchmarking, sold to third parties, or used to train AI models outside your entity scope.
Enterprise customers may request full data deletion upon contract termination. Deletion confirmation provided within 30 days.