Snapshot 58761
Normalized text
Scripts and page chrome removed; this is what change detection compares.
Enterprise Security Real Intelligence, Inc. — AVA Enterprise Intelligence Platform. This page is maintained by Real Intelligence to answer common security questions about the AVA Enterprise Intelligence Platform. It describes the controls and practices currently visible to the platform and its users. It is not an independent security certification, audit report, or legal guarantee. Enterprise customers with specific compliance or review requirements are encouraged to contact us directly. Security is a core design principle of the AVA Enterprise Intelligence Platform. AVA securely connects Slack with enterprise business systems, including Salesforce, while protecting customer data through encryption, tenant isolation, authenticated integrations, and least-privilege access controls. Security Principles AVA is built around five core security principles: Customer data remains under customer ownership. Your enterprise data stays yours. AVA processes it only to fulfill authorized requests. Every organization operates in an isolated tenant environment. Tenant boundaries are enforced on every request. Data is never shared between organizations. All communications are encrypted in transit and at rest. HTTPS/TLS protects data in motion, and sensitive credentials are encrypted at rest. Only authorized users can access enterprise information. OAuth 2.0 and role-based controls ensure access is granted only to those who should have it. AI responses are grounded in customer-authorized enterprise data. AVA answers from your connected systems, minimizing reliance on general public knowledge. Tenant Isolation AVA is a multi-tenant SaaS platform. Every request is associated with: Slack Workspace Enterprise Intelligence Environment (EIE) Connected enterprise systems Authorized user context Customer data is never shared between tenants. Authentication AVA supports secure OAuth 2.0 authentication for enterprise integrations including: Slack Salesforce Google Workspace (when enabled) Microsoft 365 (when enabled) Authentication tokens are encrypted and securely stored. Encryption All communication uses HTTPS/TLS encryption. Sensitive credentials including OAuth access tokens and refresh tokens are encrypted at rest. AI Security AVA uses enterprise-grade Large Language Models to interpret natural language and generate responses. Customer data: is processed only to answer authorized requests is never intentionally shared across organizations is transmitted only over encrypted connections is minimized to the information required to fulfill the request Enterprise records remain under customer control within connected systems whenever possible. Data Ownership Customers retain ownership of all enterprise data. AVA does not claim ownership of customer business information. Customers may disconnect integrations or request deletion of operational data at any time. Enterprise Integrations AVA currently integrates with: Slack Salesforce Optional integrations may include: Twilio Microsoft 365 Google Workspace Additional enterprise systems Each integration requires explicit customer authorization. Operational Security Real Intelligence follows industry best practices including: Principle of Least Privilege Role-based authorization Encrypted credential storage Secure OAuth flows Audit logging HTTPS-only communications Secure API authentication Input validation Secret management Continuous monitoring Responsible AI AVA is designed to produce grounded enterprise intelligence. Responses are generated from customer-authorized enterprise systems rather than public internet information whenever possible. Users should validate important business decisions using their organization's established processes. Privacy Additional information is available in our: Privacy Policy Terms of Service Subprocessor List Reporting Security Issues If you believe you have identified a security vulnerability, please contact: Email: security@realintelligence.com Please include: description of the issue reproduction steps affected system contact information We appreciate responsible disclosure and will investigate all legitimate reports promptly. Current Security Status Capability Status TLS Encryption Enabled OAuth 2.0 Authentication Enabled Tenant Isolation Enabled Slack Request Verification Enabled Salesforce OAuth Enabled Encrypted Credential Storage Enabled Audit Logging Enabled Role-Based Access Controls Enabled Multi-Tenant Architecture Enabled Least Privilege Design Enabled Compliance Real Intelligence continuously improves the security posture of the AVA platform. Current public compliance status: HIPAA: Not currently certified SOC 2: Not currently certified ISO 27001: Not currently certified FedRAMP: Not currently certified Enterprise customers with additional compliance requirements are encouraged to contact Real Intelligence to discuss deployment options. Questions? Contact us at security@realintelligence.com. Converse with AskVoicely Getting ready Powered by AskVoicely