intero

Your safety data deserves enterprise-grade security.

Intero is built from the ground up with strict tenant isolation, encryption everywhere, and AI governance controls that keep humans in charge. SOC 2 Type II in progress.

Infrastructure & data protection

Cloud infrastructure

Hosted on AWS. Application storage (documents, photos, video evidence) lives in Amazon S3; structured data lives in a managed Postgres database. Infrastructure as code for consistent, auditable environments.

Encryption everywhere

All data is encrypted in transit (TLS 1.2+) and at rest (AES-256), across S3 storage and the managed Postgres database. Keys are managed and rotated by our cloud provider's key management service.

Tenant isolation

Per-tenant logical separation with per-organization query filtering ensures your data is isolated from every other customer's. Cascade delete guarantees full removal. No cross-tenant data access.

Access control

Role-based access controls (RBAC) map to your organizational structure on every plan — granular permissions for review, assign, and verify workflows. SSO integration with your identity provider is available on Enterprise.

Audit trails

Every workflow action is logged: who did what, when, and why. Full audit trails for investigations, approvals, and closures. Exportable for compliance reporting.

Data residency

Customer data is hosted on AWS, with encryption at rest and in transit. Customers with specific data-residency requirements should talk to us — regional commitments are discussable as part of an enterprise agreement.

AI model governance

AI in safety requires a higher standard of governance. Here's exactly how Intero handles AI responsibly.

Your data never trains AI models

Your incident data is used only to generate your outputs. It is never shared across organizations and never used to train or fine-tune models — ours or our AI providers'.

State-of-the-art AI models

Powered by models from Anthropic and OpenAI, selected for the best results across investigation, classification, and drafting tasks.

Evidence-first outputs

Every AI claim references specific evidence from your data. No hallucinated recommendations.

Human-in-the-loop, always

AI drafts and recommends; it does not decide. Intero provides decision support — qualified humans on your team review, edit, and approve every finding before it's acted on. Outputs are not a substitute for professional, legal, or safety judgment.

Trust progression

AI starts as an observer. Autonomy increases only when your team's correction rates prove reliability, and advancement requires manager approval.

Organization-scoped learning

When your team corrects AI outputs, those improvements apply only to your organization. No cross-tenant learning.

Compliance & certifications

SOC 2 Type II in progress

Current security controls documentation is available on request, and third-party audit results will be shared once complete.

Security documentation

Architecture overview available on request. A data protection agreement (DPA) is available for Enterprise customers. Penetration test results and a detailed security whitepaper are available under NDA.

OSHA recordability

OSHA recordability tracking built in. Incidents are classified and logged to meet regulatory reporting requirements out of the box.

Regulatory jurisdiction

Configurable regulatory jurisdiction per location. Apply the right rules to the right sites across your organization.

Full audit trail: nothing is ever hard-deleted

All records use soft delete. Every change is tracked with who, what, and when. Your compliance and legal teams can always reconstruct the full history.

Responsible disclosure

Found a security issue? Report it to security@intero.ai. We investigate every report and will acknowledge receipt, work with you to understand impact, and keep you posted as we resolve it.

Request our security package

We understand that your security and procurement teams need detailed documentation before any evaluation. We're happy to provide:

Security architecture overview
Data protection agreement (DPA) — Enterprise
AI model governance documentation
Penetration testing results (under NDA)
Vendor security questionnaire responses
Request Security Documentation

Security is not a feature. It's a foundation.

Every investigation summary and corrective action is tied to evidence, reviewed by humans, and tracked for audit purposes. We built Intero for the security standards your organization demands. SOC 2 Type II in progress.