Trust Center

MoltBot is built with enterprise-grade security from the ground up. Here's how we protect your agents, data, and credentials.

๐Ÿ›ก๏ธ
SOC 2 Type II
โœ“ Certified
๐Ÿ‡ช๐Ÿ‡บ
GDPR
โœ“ Compliant
๐Ÿ”’
AES-256
โœ“ Encryption at rest
๐Ÿ”
TLS 1.3
โœ“ Encryption in transit
๐Ÿงช
Pen Testing
โœ“ Annual (Cure53)
๐Ÿ—๏ธ

Infrastructure Isolation

Every agent runs in a dedicated, network-isolated VM. No shared tenancy for compute. Your data and processes never touch another customer's environment.

๐Ÿ”‘

Secrets Management

API keys and credentials are encrypted with AES-256 at rest using per-tenant keys. Secrets are injected at runtime via environment variables โ€” never persisted in logs.

๐ŸŒ

Network Security

All traffic is TLS 1.3. Agents operate in isolated VPCs with egress filtering. SSH access to agent hosts is MFA-protected and fully audited.

๐Ÿ‘๏ธ

Audit Logging

All agent actions, API calls, and admin access are logged with tamper-evident timestamps. Logs are retained for 90 days (Enterprise: 1 year) and exportable.

๐Ÿ”„

Access Control

Role-based access control (RBAC) with SSO support (SAML 2.0, OIDC). MFA enforced for all admin actions. Session tokens expire after 24 hours.

๐Ÿ’พ

Data Retention

Agent memory and task logs are retained for 30 days by default. Customers can request immediate deletion. We never use customer data to train models.

Security checklist

โœ“

Encrypted credentials โ€” All secrets AES-256 encrypted at rest

โœ“

TLS 1.3 โ€” All data encrypted in transit

โœ“

No shared compute โ€” Dedicated VMs per customer

โœ“

SOC 2 Type II โ€” Certified annually

โœ“

Penetration testing โ€” Annual by Cure53

โœ“

GDPR compliant โ€” EU data residency available

โœ“

MFA enforced โ€” All admin and API key actions

โœ“

Zero training use โ€” Your data never trains models

โœ“

Audit logs โ€” 90-day tamper-evident log retention

โœ“

Egress filtering โ€” Agent network access whitelisted

โœ“

RBAC + SSO โ€” SAML 2.0 and OIDC supported

โœ“

Vulnerability disclosure โ€” Responsible disclosure program

Security questions?

Our security team responds to all inquiries within 24 hours. Enterprise customers can request a dedicated security review.

Contact Security Team Enterprise Plans โ†’