Trust center

Security model built for regulated environments

Grafty is single-tenant and customer-operated. Arcstack does not host your apps, your source, or your data.

Deployment model

Single-tenant, customer-operated

Each customer runs their own Grafty instance on their Linux infrastructure. There is no shared SaaS plane. Arcstack delivers software and licenses — your team operates the platform inside your network boundary.

Data boundary

Where data lives

Inside your network

Builder UI, source code, Git history, previews, app data, audit logs, integration credentials.

Configurable egress

LLM provider calls (OpenAI, Anthropic, Google) or local LLM endpoints. You choose per project.

Never on Arcstack SaaS

Arcstack does not receive, store, or process your prompts, code, or runtime data.

Runtime isolation

Kubernetes namespace per app

Every generated app runs in its own Kubernetes namespace with resource quotas. Size tiers XS through L allocate CPU/RAM appropriately. Deletion cleans up every resource — there are no orphans.

Access control

RBAC and audit

Roles

instance_admin, developer, viewer. Membership and limits scoped by team.

Audit

Immutable audit events for privileged actions. Exportable for SIEM ingestion.

Governance

LLM spend controls

Token usage dashboards by user, project, and team. Per-user, per-project, and per-team budgets. Hard stops block generation before another LLM API call is made — preventing runaway provider invoices.

Encryption

Data in transit and at rest

TLS

All inter-service and ingress traffic over TLS.

Secrets at rest

Provider keys and integration tokens encrypted on disk on the instance.

Sessions

Short-lived signed session tokens with rotation.

Subprocessors

Customer-controlled, not Arcstack

ServicePurposeControlled by
OpenAI / Anthropic / GoogleOptional cloud LLM inferenceCustomer (your keys)
Local / on-prem LLMOptional inference inside your networkCustomer
Integrations (Jira, Slack, GitHub, GitLab, Notion)Optional connectorsCustomer (your tokens)
Reviews & disclosures

Security review packages

Available on request

Architecture overview, threat model summary, sample questionnaire responses, SBOM, and reference DPA. Contact us to receive the latest package.

Vulnerability reporting

Email info@grafty.ai with subject "[Security]". We respond within one business day.