6.4 Security and Privacy
Craft places the highest priority on user security and data privacy. All user data is encrypted both at rest and in transit using industry-leading standards such as AES-256 and TLS 1.3. The platform adheres strictly to GDPR and other global privacy regulations, ensuring user control over data export, deletion, and permissions.
The AI input/output pipeline includes automated sanitization processes to detect and prevent the propagation of harmful, biased, or non-compliant content. Moreover, the system incorporates multi-layered authentication, session token encryption, and role-based access control to prevent unauthorized access.
Craft's security strategy is complemented by regular third-party audits, penetration testing, and compliance checks, ensuring ongoing alignment with the highest standards of digital trust and operational integrity.
Last updated
Was this helpful?