Security & Compliance

How Altheris keeps your agents — and your data — provably secure.

Infrastructure

EU-hosted on Supabase (eu-west-2, London). All data is encrypted at rest and in transit over TLS.

Cryptographic Security

Every agent is issued a signed Ed25519 identity passport, and all actions are recorded in a tamper-evident hash chain.

On-Chain Anchoring

Receipt hashes are periodically anchored to the Polygon blockchain, giving you independent, verifiable proof of integrity.

Access Control

Row Level Security isolates every account's data, with strict service-role separation and role-based access control (RBAC) for teams.

Compliance

GDPR data residency in the EU, a complete audit log of account events, and one-click compliance reports for your records.

SDK Security

Wrap any agent in two lines of code to activate all 13 runtime security features — listed below.

13 SDK Security Features

Activated instantly when you wrap an agent with the Altheris SDK.

Prompt Injection Detection
Runtime Scope Enforcement
Behavioural Baselines
Decision Provenance Recording
Emergency Lockdown
Multi-Party Authorization
Output Filtering
Rate Limiting
Cost Circuit Breakers
Conditional Access
Honeypot Detection
Credential Rotation
Auto-Versioning

Responsible Disclosure

We welcome reports from security researchers. If you believe you've found a vulnerability, please email security@altheris.io with details and steps to reproduce. We will acknowledge your report and keep you updated through resolution. Please give us reasonable time to remediate before any public disclosure.

Need a security review?

Enterprise teams can request architecture documentation and a dedicated security review.