Security First

Security at every layer

Every component of Wardian, from encryption to deployment, is built on zero-trust principles. Your data stays yours, always.

Four pillars of protection

End-to-End Encryption

AES-256-GCM client-side encryption by default. Your messages are encrypted before they leave your browser. Not even Wardian can read your data.

Trusted Execution Environment

Enterprise data is processed inside AMD SEV-SNP hardware enclaves. Neither the hosting provider nor Wardian can access process memory.

Data Residency

Your knowledge base, integrations, and MCP servers run on your infrastructure. In SaaS mode: French hosting on OVHcloud. In on-premise mode: nothing leaves your network.

Compliance

Built for SOC2 Type II, ISO 27001, and GDPR compliance. Full audit logging and role-based access control included.

How your data stays private

Every message follows a strict encryption pipeline before reaching our AI models.

Your message

Plain text in your browser

Client encryption

AES-256-GCM encryption locally

Secure transfer

TLS 1.3 encrypted channel

TEE processing

Decrypted only inside hardware enclave

Encrypted response

Re-encrypted before leaving the enclave

Zero knowledge. Zero compromise.

Encryption, live

Follow the full cycle of a request: from plaintext on the client to decryption after authorization. Your data is never in the clear outside your perimeter.

1
2
3
4
5
Confidential company data

Data stays under your control.
No external exploitation.
No uncontrolled leaks.

Zero Trust Architecture

Multiple independent security layers ensure that a breach in one layer doesn't compromise the others.

01

Network isolation & firewall

First perimeter barrier: firewall, network segmentation, control of inbound and outbound flows.

02

TLS 1.3 transport encryption

Every exchange between client and server is encrypted with the latest standards.

03

Application-level access control

Strong authentication, granular permissions, traceability of every action.

04

Hardware enclave (TEE)

Compute runs in an inviolable processor enclave. No one, not even the host, can access memory.

Defense in depth. Not just a firewall.

Distributed intelligence

Your data isn't centralized on a single server. Wardian leverages a decentralized network of validated nodes to process and verify AI responses.

W

No single point of failure

Your data is distributed across independent nodes. If one fails, the network keeps running.

Multi-node validation

Every response is verified by multiple independent validators before being returned.

Cryptographic proof

Computation integrity is mathematically guaranteed on every request, instantly verifiable.

No central authority

No entity can access or alter your data. By design of the protocol.

Decentralized by design. Trustless by nature.

Built for compliance

Meeting the highest international security standards so you can focus on your business.

SOC 2 Type II

Audit controls for security, availability, and confidentiality

In progress

ISO 27001

International standard for information security management

In progress

GDPR

Full compliance with European data protection regulation

Compliant

Security FAQ