What we're certified for, what we never do with your data, and what we'll sign.
Independent auditors test our controls every year.
Security, availability and confidentiality controls across every system.
Controls over financial reporting, examined by a licensed CPA firm.
Deployable under a BAA when protected health information is in scope.
Third-party tests at least annually, with results shared under NDA.
Encrypted, isolated, and never used for anything but your work.
AES-256 at rest and TLS 1.3 in transit, everywhere.
Your ledger is never used to train models, ours or anyone else's.
Each customer's data is logically separated with its own keys.
Set retention periods and request deletion at any time.
The same controls your auditor expects from your own team.
Read-only by default. Write access is scoped per system and workflow.
Metahubs prepares. Named people on your team approve.
Sign in through Okta, Google or Microsoft Entra ID.
Every action logged with source, preparer, reviewer and timestamp.
Standard agreements ready for your legal team.
Data processing agreement aligned with GDPR and CCPA.
Business associate agreement for HIPAA-covered data.
Master services agreement with security exhibit.
Enterprise plans can negotiate additional security terms.
Trust Center
Available under NDA. Most requests are answered the same day.
FAQ
Sending a questionnaire? We'll complete it.
Where possible we connect with OAuth or API tokens. Any stored secrets are encrypted in a managed vault and never visible to staff.
Walk us through how your team closes today. We'll show the same work running in your tools.
Book a Demo →