> ## Documentation Index
> Fetch the complete documentation index at: https://workllm.mintlify.site/llms.txt
> Use this file to discover all available pages before exploring further.

# Security | WorkLLM

> WorkLLM security: dedicated, physically isolated tenants, zero data retention at the LLM layer, encryption, RBAC, SSO, and full audit logs.

Every WorkLLM customer gets a dedicated, physically isolated tenant, with strict access controls, full auditability, and zero data retention at the LLM layer. Your company's data stays yours, never mixed with anyone else's, never used to train models.

## Everything your team needs to adopt AI with confidence

<CardGroup cols={2}>
  <Card title="Dedicated Tenant Per Customer" icon="building-shield">
    Your data, AI context, and permissions live in a space that's yours alone.
  </Card>

  <Card title="Zero Data Retention at the LLM Layer" icon="ban">
    Requests to model providers aren't retained by them.
  </Card>

  <Card title="Encryption at Rest and in Transit" icon="lock">
    Modern, industry-standard encryption protects your data wherever it lives and moves.
  </Card>

  <Card title="Role-Based Access Controls" icon="key">
    Define exactly what each user, assistant, agent, and integration can access.
  </Card>

  <Card title="Full Audit Logs" icon="file-lines">
    Every meaningful action is logged, so you can review activity with confidence.
  </Card>

  <Card title="Your Data Never Trains AI Models" icon="shield-halved">
    Customer data is never used to train models, only processed for the request at hand.
  </Card>

  <Card title="SSO & SAML" icon="right-to-bracket">
    Secure sign-in that fits how your team already logs in.
  </Card>
</CardGroup>

## Dedicated tenant for every customer

Every WorkLLM customer gets their own dedicated tenant, isolated at both the infrastructure and application layers. Your data, your AI context, and your permissions live in a space that's yours alone, never shared, never mixed with anyone else's.

## How your workspace stays secure

Isolation is the foundation. These capabilities protect your data and give you control across every layer of the workspace.

<AccordionGroup>
  <Accordion title="Encryption at rest and in transit">
    Your data is encrypted at rest and protected in transit using modern industry standards, so it's safe wherever it lives and moves.
  </Accordion>

  <Accordion title="Role-based access control (RBAC)">
    Granular permissions mean every user and service can access only what they're meant to, nothing more.
  </Accordion>

  <Accordion title="SSO and authentication">
    Secure sign-in with optional SAML-based SSO, so access fits how your team already logs in.
  </Accordion>

  <Accordion title="Audit logs and activity tracking">
    Every meaningful action is logged in your workspace, so you can review activity and answer questions with confidence.
  </Accordion>

  <Accordion title="Input and output guardrails">
    Redact sensitive data, restrict prompts, and keep outputs within your policies, automatically, across the workspace.
  </Accordion>

  <Accordion title="Your data never trains AI models">
    Customer data is never used to train models. It's processed only for the request at hand, never retained for training.
  </Accordion>

  <Accordion title="Zero data retention at the LLM layer">
    Requests to model providers aren't retained by them, giving you zero data retention at the LLM layer.
  </Accordion>

  <Accordion title="Full admin control">
    Admins manage integrations, sharing, usage visibility, and access from one place, so oversight stays central and every action stays permission-scoped and logged.
  </Accordion>
</AccordionGroup>

## FAQs

<AccordionGroup>
  <Accordion title="Is our data isolated from other customers?">
    Yes. Every WorkLLM customer is provisioned into their own dedicated tenant. Your data, AI context, embeddings, and access controls are isolated to your tenant, so there's no cross-customer exposure, by design.
  </Accordion>

  <Accordion title="Does WorkLLM use our data to train AI models?">
    No. Your data is never used to train models. Prompts are processed only for the request at hand and are never retained for training.
  </Accordion>

  <Accordion title="What does &#x22;zero data retention at the LLM layer&#x22; mean?">
    Requests to the model providers are processed transiently and aren't retained by them, giving you zero data retention at the LLM layer.
  </Accordion>

  <Accordion title="Where is our data stored?">
    Your data is stored securely within your dedicated tenant, isolated from other organizations and accessible only to your workspace.
  </Accordion>

  <Accordion title="What access controls are available?">
    WorkLLM supports role-based access control (RBAC), so admins can define exactly what each user, assistant, agent, and integration can access.
  </Accordion>

  <Accordion title="Are user actions auditable?">
    Yes. Every meaningful action, access changes, configuration updates, and data usage, is logged and available to your workspace admins.
  </Accordion>

  <Accordion title="How is our data encrypted?">
    All data is encrypted at rest and protected in transit using modern, industry-standard encryption.
  </Accordion>

  <Accordion title="How does WorkLLM prevent unauthorized access?">
    Through authentication, role-based permissions, session management, and tenant-level isolation across both the infrastructure and application layers.
  </Accordion>

  <Accordion title="Do you offer on-premise deployment?">
    Yes. WorkLLM can run in our managed cloud, your private VPC, or fully on-premise, depending on your security and data residency requirements.
  </Accordion>

  <Accordion title="Can WorkLLM be deployed in our own infrastructure?">
    Yes. We support dedicated deployments inside your own environment for stricter regulatory or data residency needs.
  </Accordion>

  <Accordion title="How can our security team get more information?">
    We're explicit about how your data is processed, stored, and protected, no vague claims, no hidden behavior, just clear answers your security, legal, and IT teams can rely on. Send your questions or security questionnaire to [hello@workllm.io](mailto:hello@workllm.io) and we're happy to support your review.
  </Accordion>
</AccordionGroup>

## Next steps

<CardGroup cols={2}>
  <Card title="Request a Demo" icon="calendar" href="https://calendar.app.google/Muovg96CzondTeYw6">
    Talk to the WorkLLM team about your security and compliance requirements.
  </Card>

  <Card title="Contact Us" icon="envelope" href="https://workllm.io/company/contact">
    Have a question or want to talk to the team? Reach out and we'll get back to you.
  </Card>
</CardGroup>
