AI governance and trust

AI drafts.
Your team decides.

Security leaders need to see how AI handles their data. KeenSec doesn't train models on your data, keeps each customer separate, and a person approves every action.

KeenSec Shield

Your data stays yours.
Every step on record.

See how your data is kept separate, cleared after use and logged for audit.

● No training on your data ● Prompts cleared after each request ● Tamper-evident audit log
KEENSEC // TRUST CONTROLS SAMPLE VIEW
TENANT ENCRYPTION Your keys Customer-managed keys
MODEL TRAINING None Your data never trains a model
SAMPLE TENANT POLICY ISOLATED
{
  "tenant_id": "cust-enterprise-prod-082",
  "data_retention": "NONE",
  "model_training": false,
  "encryption_key": "customer-managed/f9b2-3c81",
  "outbound_filters": ["MASK_PERSONAL_DATA", "REDACT_SECRETS"],
  "human_approval": "REQUIRED"
}

Try the controls

The controls behind
every AI task

Pick a task to see how your data is protected and who signs off before anything happens.

Illustrative example with sample values.
YOUR CONTROLS

Simulation drafting policy

ACTIVE

Drafts stay within approved templates, personal data is masked, and a security admin signs off before anything is scheduled.

TRAINING ON YOUR DATA None
Your data never trains a model
PROMPTS KEPT AFTERWARDS None
Cleared once the response returns
PERSONAL DATA Masked
Replaced before the AI sees it
PROMPT ATTACKS Screened
Inputs checked for manipulation first
UNCERTAINTY Score shown
Flagged when evidence is missing
HUMAN SIGN-OFF Required
No action without admin approval
SETTING SAMPLE CONFIGURATION
Encryption keys Customer-managed (bring your own key)
Where AI runs Private environment, no public API
Audit log Tamper-evident, hash-chained
Who decides Security lead approval
REQUEST CHECKS

What happens to a request

TASK: AI STUDIO
1
Personal data masked PASSED

Found 2 email addresses and 1 phone number in the sample prompt and masked them before sending.

2
Manipulation checks PASSED

Checked that the draft contains no harmful code or real credential theft.

3
Private processing CLEARED

Processed in a private environment. Memory cleared as soon as the response returned.

4
Human sign-off REVIEW REQUIRED

The draft waits until a security admin approves it.

Waiting for review

A person approves before anything is sent.

How a request flows

From your data to your decision

Four steps between your data and any action, with your team in charge of the last one.

Stage 01

Your tenant

Data comes only from your tenant, encrypted in transit and at rest.

  • Customer-managed keys
  • TLS 1.3 in transit
  • Nothing cached to disk
Stage 02

KeenSec AI gateway

Every request is screened for prompt attacks, usage limits and data leaving your tenant.

  • Jailbreak attempts blocked
  • Usage limits
  • Tamper-evident audit log
Stage 03

Private processing

Requests run in a private environment. Prompts and responses aren't kept, logged by model providers or used for training.

  • No prompts stored between requests
  • No-training contract
  • Memory cleared on exit
Stage 04

Your decision

Results arrive with a confidence level and reasoning. Your team approves, edits or rejects.

  • Admin sign-off required
  • Confidence shown
  • Override or reject at any time

Our AI commitments

Eight commitments.
Stated plainly.

The rules every AI feature in KeenSec follows.

01 Contractual

No training on your data

Your emails, simulation results, employee lists and investigations are never used to train or fine-tune public models.

Verification: Zero-retention API contracts and isolated tenant environments.
02 Isolated

Each customer kept separate

Every organisation's data sits in its own boundary, encrypted with its own customer-managed keys and access roles.

Verification: Envelope encryption and partition keys, within our SOC 2 Type II ready controls.
03 Cleared

Cleared after every request

Prompts and responses exist only while a request runs, then are erased.

Verification: Stateless processing with automatic memory clearing.
04 Human in the loop

A person approves every action

AI never launches simulations, quarantines email or takes disciplinary action without a security lead's approval.

Verification: Approval gates that need a signed admin sign-off.
05 Honest verdicts

Uncertainty stated, not hidden

When evidence is missing or conflicting, KeenSec says so and shows what is missing.

Verification: Confidence scores with a visible signal breakdown.
06 Protected inputs

Screened for prompt attacks

A central gateway blocks prompt injection, jailbreaks and data-extraction attempts before a model sees them.

Verification: Content classifiers and outbound data filters.
07 Full record

Every AI action on record

Each AI-assisted action logs the prompt hash, model version, time and approver in a tamper-evident log.

Verification: Export to your SIEM via syslog or API.
08 Standards

Mapped to NIST AI RMF

Our AI risk approach maps to the NIST AI Risk Management Framework, within our SOC 2 Type II ready controls.

Verification: Mapped controls with periodic reviews.
AI controls. You set what the AI may do, approve what it drafts, and every step is logged.

Security due diligence

Straight answers for security buyers

Explore Trust Center

Is our data used to train AI models?

No. Our contracts with model and infrastructure providers rule out training on customer data, and data is cleared after each request.

Can AI run in a private environment?

Yes. Regulated organisations can choose a dedicated private deployment, including isolated set-ups with no public API traffic.

What if a verdict on a reported email is uncertain?

KeenSec marks it "Uncertain" and shows which evidence is missing, rather than calling it safe.

Does AI act without human approval?

No. AI drafts simulations, scores emails and summarises results. A person approves every campaign launch and quarantine.

How do you stop prompt-injection attacks?

Reported emails and user comments are screened for manipulation attempts before the AI reads them.

How do we audit AI use?

Every AI action creates a tamper-evident record: prompt hash, model version, time, confidence and approver. Export it to your SIEM via API or syslog.

Let’s connect the dots

See the controls behind
every AI feature.

Bring your awareness program, your reporting workflow, or the question your current metrics cannot answer.

Book a demo