Intelligence X
How Intelligence X approaches data security.
What this page is for
A real structure, with no invented proof.
Security controls, data handling principles, access practices, and the areas that will be completed as the production security program matures.
Controls in place
Security posture, stated plainly.
The controls that are in place today, and the ones that are not yet. Nothing on this page is aspirational — where something is in progress, it says so.
Encryption
TLS 1.2 or above in transit. AES-256 at rest for all customer data and derived records. Key rotation is automated and logged.
Access control
Role-based access on every object and field. Least-privilege by default, SSO and SAML available on business plans, and every administrative action is written to an immutable audit log.
Data residency
Region is chosen at setup and does not move afterwards. US and EU regions are available; data does not cross between them for processing or backup.
CRM write scopes
Integrations start read-only. Write access is granted per object and per field by an administrator, and can be revoked without disconnecting the integration.
Retention and deletion
Signal history is retained for ninety days at full resolution. Deletion requests remove derived records as well as source rows, and completion is confirmed in writing.
Vulnerability handling
Dependencies are scanned continuously and patched on a fixed cadence. Security reports go to security@ and receive an acknowledgement within one business day.
Register