Protocol
Security

Control without slowing service down.

Protocol is designed around access controls, permissions, auditability, data handling, reliable infrastructure, and responsible use of intelligence.

Control plane
01

Encryption

Protect customer and workspace data in transit and at rest using configured infrastructure controls.

02

Access controls

Keep access scoped to the people, teams, and roles that need it.

03

SSO

Connect workforce identity to a centralized sign-in experience when configured.

04

SCIM

Provision and deprovision access through enterprise identity workflows when configured.

05

Audit logs

Track important administrative and product actions for review.

06

Data retention

Configure retention behavior around your operational and legal requirements.

07

Permissions

Control who can view, edit, automate, approve, and administer service work.

08

Infrastructure

Design the service layer around reliability, observability, and clear operational boundaries.

09

Backups

Support recovery planning with configured backup and restore processes.

010

Incident response

Use documented operational processes for investigating and communicating service incidents.

011

Responsible AI

Keep sources, permissions, human control, and authorized actions visible in AI-assisted workflows.

012

Privacy

Give organizations controls for customer data handling and access within Protocol.

Certifications

Claims stay off until they are verified.

Certification status is configuration-driven. Protocol does not present planned programs as completed certifications.

SOC 2 Type IIplanned
ISO 27001planned
GDPR data processingplanned
HIPAA supportplanned