Security

One business. One boundary.

Carcin gives your business its own environment, asset store, and memory index. Identity is checked on the server. Connected accounts stay scoped to your workspace. Stored assets are encrypted in transit and at rest.

Dedicated environment · Isolated assets · Scoped memory · Server-verified identity · Audit log

Nested boundaries: your business inside your workspace, inside a server-side identity check, inside approved connections. A request from you gets in. Anyone else stays out.
Fig. 01 ยท The boundary, from the inside out

Your workspace is not a folder in someone else's app.

Every business Carcin runs is provisioned as its own deployment: its own compute, its own database, its own object store, its own vector memory, its own address. Nothing is shared with the business next door because there is no "next door."

Controls

What is deployed, stated plainly

No badges. No future tense. These are the controls running today.

Identity decides the boundary

Who you are is asserted by the server, never by the browser. Membership is checked on every request, and the workspace a request reaches is the one that identity belongs to.

Credentials stay scoped

When you connect an account, the credential is stored in a vault and bound to your workspace. Carcin's own keys live in a secrets store, never in code.

Encrypted storage

Everything Carcin stores for you, from site assets to uploaded documents, is encrypted in transit and at rest.

Every action logged

Your workspace keeps an audit log of what Carcin did and when. The record is yours to read.

Memory serves one business

Retrieval is scoped to your workspace. Carcin does not train on your data and does not pool it with anyone else's.

Updates prove themselves

Each release is probed against a live workspace before promotion. A version that cannot prove it answered does not ship.

What is not on this page: compliance certifications, a formal uptime agreement, and region pinning. Carcin does not claim them until they are contracted and deployed. When they are, they will be listed here with a date.

FAQ

Security questions, answered

01 Who owns the data in my workspace?
You do. The site, the copy, the assets, the memory Carcin builds about your business. Cancel and take it with you.
02 Can another Carcin customer see my data?
No. Your business runs in its own environment with its own memory index and its own asset store. Identity is checked on the server, so a browser cannot choose another business's workspace.
03 Does Carcin train on my data?
No. What Carcin learns about your business is used for your business. There is no pooling across customers.
04 What happens to my data if I cancel?
Your site stays live through the end of the billing period. Account data is kept for 90 days after that in case you come back, then removed. Everything Carcin made is yours to export first.
05 How do updates reach my workspace?
Each release is tested against a live workspace endpoint before it is promoted. If the new version cannot prove it answered, it is not rolled out.

Your business. Your boundary.

Provisioned in about a minute. Yours from the first second.

Start free with 100 credits · No card required · Keep everything Carcin builds