← BackSellexio · Trust Center
How we protect your data
This page is maintained by Sellexio to answer common security, privacy, and compliance questions about the platform. It reflects controls we operate today. It is not an independent certification.
Accountability and contact
Registered address
Sellexio
1401 28 St N
Lethbridge, AB T1H 6H9
CanadaPaperwork on your terms
You can sign our mutual NDA online in under a minute — or send yours and we will sign your paper instead. Pilots run on historical, closed files only, so no live operational system is ever touched.
Endpoint security posture
Endpoint protection · Huntress MDR
- Protected endpoints
- —
- Open incident reports
- —
- Monitored organizations
- —
24/7 managed detection & response across Sellexio production workstations and servers. Counts are pulled live from the Huntress Management API; no host names, user identities, or incident details are published.
Security controls
Encryption
TLS 1.2+ in transit, AES-256 at rest across all databases and file storage.
Access control
Role-based (viewer / analyst / comptroller / admin) with row-level security enforced at the database.
Audit logging
Every claim status change, AI run, document upload, and role grant is recorded with actor, timestamp, and immutable hash.
Data residency
Primary in US-East. Enterprise plans can pin to EU-West.
Backups
Point-in-time recovery up to 7 days, daily snapshots retained 30 days.
Uptime target
99.9% for Professional, 99.95% with credit-back for Enterprise.
Vulnerability management
Automated dependency scans on every deploy; Huntress MDR/EDR for endpoint detection; third-party pen test scheduled Q3 2026.
AI safety
All AI outputs marked as advisory. Every call is logged to the AI audit ledger with prompt hash, model, tokens, and latency.
Endpoint protection
Huntress-managed detection & response (MDR) monitors production workstations and servers with 24/7 threat hunting and SOC 2 evidence collection.
Legal documents and reports
Compliance roadmap
- · GDPR / UK GDPR — operational today
- · SOC 2 Type I — Q4 2026 (Vanta + Huntress evidence)
- · SOC 2 Type II — Q3 2027
- · ISO 27001 — on request (Enterprise)
- · E&O + Cyber insurance — USD 2M each, in binding
- · Annual pen test — Q3 2026 (Cure53)