Security for confidential technical work
Valigent is designed for work involving unpublished inventions, technical documentation and other commercially sensitive information.

Key security facts
- Customer Data is not used for model training
- Primary Customer Data is stored in the EU
- Encryption in transit and at rest
- Organisation-level data separation
- Role-based access control
- Daily backups
Customer Data and AI
Valigent processes Customer Data only to provide the service. Only the data required for the relevant functionality is processed.
Customer Data is not used to train Valigent models or third-party general-purpose AI models.
Customer Data is not sold, used for advertising or treated as public disclosure.
Hosting and data protection
Primary Customer Data is hosted in the European Union using established cloud infrastructure.
Data is encrypted in transit and at rest.
Backups are created daily.
Access and customer separation
Customer organisations are separated within the service, and access is restricted to authorized users.
Customers can manage user access through roles and permissions. Internal access to production systems and Customer Data is limited to operational need.
Critical internal systems are protected with multi-factor authentication.
Export and deletion
Customers may request an export or deletion of their Customer Data.
After contract termination, Customer Data is handled according to the applicable agreement and Data Processing Agreement.
Limited information may be retained where required for legal, accounting or security purposes.
Security approach
Valigent reviews and improves its technical and organisational safeguards as the product and customer requirements evolve.
Report a security issue
Email support@valigent.io and include enough information for the team to understand and investigate the issue.
Security and procurement
Valigent can provide additional information during customer security and procurement reviews, including:
- Data Processing Agreement
- Subprocessor information
- Data location information
- Retention and deletion information
- Responses to customer security questionnaires
Provider and subprocessor details are shared separately through the applicable Data Processing Agreement, subprocessor list or procurement documentation.