Security and AI governance
Control where Bionamic runs, how users sign in, which AI is used, and what agents can access.
Identity and access
| Control | Availability and details |
|---|---|
| Passkeys | Included. Phishing-resistant sign-in; Bionamic does not store passwords. |
| Single Sign-On | Available on demand. Connect your organization’s sign-in system. |
| Team administration | Included. Admins manage members and access rules. |
| IP restrictions | Optional. Restrict access to approved IP addresses or ranges. |
Data protection and isolation
| Control | Availability and details |
|---|---|
| Encryption in transit | Included. Data is encrypted in transit. |
| Encryption at rest | Optional. Available when required. |
| Customer environment | Fully isolated. Each customer receives a separate application environment. |
| Dedicated machine | Available on request. Run the environment on an isolated machine. |
Agent isolation
| Control | Availability and details |
|---|---|
| Linux sandboxes | Included. Linux kernel process isolation encloses agent execution. |
| Restricted resources | Included. Agents access only resources made available inside their sandbox. |
AI providers and models
Choose the AI arrangement that fits your security, privacy, and operational requirements.
Retention and model-training terms depend on the arrangement selected by the customer. We work with each customer to choose suitable terms and providers.
Deployment and data location
Choose where the application and its data are hosted.
Traceability
| Control | Availability and details |
|---|---|
| Workspace history | Conversations, generated files, and workbook results remain available for inspection and review. |
| Audit logs | Included. Activity is recorded for review. |
GDPR and security review
| Control | Availability and details |
|---|---|
| GDPR | Compliant. Bionamic follows GDPR requirements. |
| Security review | For security, deployment, or AI-governance questions, contact info@bionamic.io . |