Third Party Index

Snapshot 22335

Document
Security page
URL
https://harriethq.com/security/
Fetched
HTTP status
200
Content type
text/html; charset=utf-8
Fetch mode
static
Size
30495 bytes
SHA-256 (raw)
4ad9cc00bdfbf407c62aa6a2fb0d4f51da4fbf29042c113d732794da492ca916
SHA-256 (normalized text)
a45709d4d5a25a879a1b85074a91a29e14bca99bba59c8cdc77a418e60a6be69

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Broader AI adoption with clear controls
More people on AI, with control of access, tools and shared skills.
Visit the Trust Center Explore EU hosting
SOC 2 Type II
The current independent audit report.
Trust Center
Data Processing Addendum
Contractual commitments and EU and UK transfer safeguards.
Read the DPA
EU hosting
OpenAI and Anthropic, hosted in the EU.
Explore data sovereignty
Give each team the right access
Company identity
Single sign-on and provisioning from your company directory.
Team workspaces
Each team gets the models, apps and skills it needs.
Tool permissions
Who can use each tool, and where a person must approve.
The same team workspaces carry the budget caps.
See what this does to your AI bill
Review what reaches your systems
Skill and connector review
Automated checks and human review before rollout.
Controlled changes
People propose, reviewers decide what reaches the team.
Isolated execution
Hosted connectors and agent workspaces run in sandboxes.
See what happened
A clear record
Who used which tools and skills, and what happened.
Quick answers
Search, link or export any record.
Your retention policy
Audit retention you set.
Questions we get asked
Is Harriet independently audited?
Yes. SOC 2 Type II, with the report in our Trust Center.
Can IT control what each team can use?
Yes. Models, tools and shared skills, from one place.
Can we see what AI is doing?
Yes. Search and export the record of tool and skill activity.
Will you help our security team?
Yes. We work with your security team on questions and controls.
Let’s get your team moving.
The right controls in place, then a rollout that does useful work.
Discuss your rollout
Looking for the detail?
Privacy policy Data Processing Addendum Sub-processors Data sovereignty