Trust Centre

Enterprise trust for Organisational Intelligence.

How Knowva approaches security, privacy, compliance and responsible AI. This page is maintained by Knowva to answer common questions from customers and enterprise buyers.

Security

Enterprise controls, on by default

Encryption

Data is encrypted in transit and at rest across the platform.

Data Isolation

Strict multi-tenant isolation; every tenant's data is logically separated.

Role-Based Access

Granular Owner, Admin and Member roles with least-privilege defaults.

Audit Logs

Every knowledge action and administrative change is logged for review.

Explainability

Health, Risk and Readiness scores trace back to the signals that produced them.

Grounded Retrieval

Coach answers are generated from validated, in-scope knowledge with citations.

Secure Hosting

Deployed on hardened, monitored cloud infrastructure.

GDPR Ready

Data protection by design and by default across the product.

Governance

AI, knowledge and responsible use

AI Governance

Policy controls over what content is used for AI retrieval, how, and by whom.

Knowledge Governance

Owner → Admin → Approver validation ladder for every knowledge asset.

Responsible AI

Grounded, cited answers; unvalidated, archived or soft-deleted assets never reach Coach.

Bias & Safety

Guardrails around unsafe or out-of-scope outputs, reviewable by administrators.

Privacy

Data protection by design

Knowva is built around GDPR principles of data minimisation, purpose limitation and accountability. Customers control what knowledge is ingested and who can see it. Personal data is processed only as required to deliver the service.

Employees participate in knowledge capture on a consent basis. Owners can archive or soft-delete content, and archived or soft-deleted assets are excluded from AI retrieval.

Compliance

Where we are, and where we're going

Aligned

GDPR

Data protection by design and by default across the platform.

In progress

SOC 2 Type II

Controls designed against SOC 2 Type II criteria. Formal certification is on our roadmap.

Roadmap

Additional frameworks

Additional certifications are being evaluated based on customer needs.

This page describes current posture and roadmap intent. It is not, on its own, an independent certification.

Architecture

Layered, multi-tenant, governed

A conceptual view — see How It Works for the full pipeline.

Experience: AI Coach, Executive Dashboards, Knowledge Library UI
Intelligence: Health, Risk, Readiness, Recommendations
Knowledge: Graph, Validation, Lifecycle, Freshness
Capture: Documents, Meetings, Video, Audio, Sessions
Foundations: Identity, Tenant Isolation, Audit, Encryption
Roadmap

Trust roadmap

  • SOC 2 Type II certification — in progress
  • Additional regional hosting options — planned
  • Expanded customer-facing audit reporting — planned
  • Additional identity provider integrations — planned
System Status

Live status page

A public status page is planned. In the interim, enterprise customers can request status information through their account contact.

Public status page — coming soon
FAQ

Trust questions, answered

Enterprise trust contact

For security questionnaires, DPAs, subprocessor requests or architecture reviews, please contact our Enterprise team.

Talk to us about your trust requirements.

We'll walk through security, privacy, compliance and AI governance in a structured session.