FNR AI FNR AI
Product Agents Integrations Security Blog
Support Pricing FAQ
Star Us
Download

Security

Trust Center

Effective: January 1, 2026 · Last updated: April 25, 2026 · Security overview

FNR AI handles the most critical content of your team — that's why security, privacy and resilience are designed in from day one. This page is the full control documentation; for a product-focused summary see the Security page.

Contents

  1. Data ownership & local storage
  2. Encryption
  3. Access control
  4. Infrastructure
  5. AI & model security
  6. Service level commitments (SLA)
  7. KVKK compliance (Türkiye)
  8. Compliance & DPA
  9. Incident management
  10. Third-party providers
  11. Responsible disclosure
  12. Contact

1. Data ownership & local storage

Your project data is stored locally on your device by default. Unless you explicitly enable cloud sync, your content is not sent to Enortic's servers. The data is always yours; when you close your account, all metadata is deleted within 30 days.

2. Encryption

  • In transit: end-to-end TLS 1.3.
  • At rest: server-side AES-256 encryption.
  • On device: OS-level disk encryption (FileVault, BitLocker) is recommended; in-app key management integrates with macOS Keychain.

3. Access control

  • SSO support (Google, Microsoft Entra) — Team plan.
  • Two-factor authentication (2FA) — all plans.
  • Role-based permissions: Admin, Editor, Viewer.
  • Enortic staff access customer content only via explicit support requests with audit logs.

4. Infrastructure

Our cloud components run on AWS (Frankfurt, Virginia) and Cloudflare. Environments are isolated in dedicated VPCs, secured by least-privilege access and continuous penetration testing. Backups are taken daily and retained for 30 days in a different region.

5. AI & model security

FNR AI's AI features run on the model providers you select, such as OpenAI and Anthropic. Our agreements with these providers require that your content not be used for model training. AI actions always wait for your approval; nothing autonomous runs in the background.

6. Service level commitments (SLA)

For Enterprise customers, we commit to the response times below. For other plans, see the SLA table on the /support page.

Incident typeEnterprise responseResolution target
Critical (system down)4 hours24 hours
High (key feature impacted)12 hours48 hours
Normal (general questions)1 business day5 business days

Uptime commitment: 99.5% monthly (excluding scheduled maintenance). Live status: status.usefnr.com.

7. KVKK compliance (Türkiye)

  • Enortic, Inc. acts as a data processor under Türkiye's Law No. 6698 on the Protection of Personal Data (KVKK).
  • The customer is the data controller; FNR AI processes personal data only on the customer's documented instructions.
  • VERBİS registration: Enortic, Inc. is US-headquartered and is assessed under the cross-border transfer provisions.
  • The notice obligation under KVKK Article 10 belongs to the customer; required documents are provided on request.
  • For the KVKK compliance package and DPA: legal@enortic.com.

8. Compliance & DPA

Current state of our SOC 2 Type II audit journey:

Gap analysis
Controls in implementation
Audit — Q3 2026
Certification

Last updated: April 2026

  • Data processing aligned with GDPR and KVKK.
  • A signature-ready Data Processing Agreement (DPA) is available for enterprise customers.
Download DPA (PDF) or request via email: legal@enortic.com · View DPA overview — Version 1.0 — April 2026

9. Incident management

If a data incident is detected, we notify affected customers within 72 hours and meet regulatory obligations. Our 24/7-monitored security operations center uses behavioral analytics for anomaly detection.

10. Third-party providers

The sub-processors we use to run the Service are listed below. The list is subject to contractual security standards.

ProviderServiceData centerPurpose
AWSCloud infrastructureFrankfurt, VirginiaCloud components, backups
CloudflareCDN, DDoS protectionGlobalNetwork security
StripePayment processingUS, EUBilling
OpenAIAI modelUSUser-selected AI features
AnthropicAI modelUSUser-selected AI features

Last updated: April 2026 — Changes are notified 30 days in advance.

11. Responsible disclosure

If you discover a security vulnerability, please report it to security@enortic.com. We assess findings within 5 business days and apply appropriate fixes. A bug bounty program is in place for valid disclosures.

12. Contact

TopicEmailExpected response
Security vulnerability reportsecurity@enortic.com5 business days
DPA & legal requestslegal@enortic.com3 business days
Enterprise inquiryhi@enortic.com1 business day
General support/support or hi@enortic.comSLA per plan

Enortic, Inc. — enortic.com

Be first in line.

Open source is coming. Join the early access waitlist.

Join 200+ teams on the waitlist →

Product

  • Features
  • How It Works
  • Integrations
  • Blog
  • Pricing
  • Download for macOS

Company

  • About Enortic
  • Cognimemo
  • FAQ

Support

  • Help Center
  • Submit a Request
  • System Status

Legal

  • Terms and Conditions
  • Privacy Policy
  • Trust Center
  • Data Processing Agreement
  • Cookie Policy

Contact

  • LinkedIn
  • X (Twitter)
FNR AI Enortic, Inc. © 2026
FNR AI