Security you can actually understand
A plain look at how we protect your data, your credentials, and every action your agents take.
Access controls you set per agent
Every agent ships with a visibility setting: private to you, internal to your workspace, or external for the agents that face customers.
Isolated, single-tenant sandboxes
Your data runs in its own sandbox. Network-layer access is restricted to validated requests only.
Encrypted credential storage
Credentials live in dedicated secret storage, encrypted at rest and in transit, and are never written to an agent's disk.
Independent audits
Havelin is SOC 2 Type I certified and undergoes regular third-party penetration testing.
SOC 2 Type I
Independently audited annually.
CASA Assurance L1
Assessed against the OWASP ASVS standard.
Zero data retention
Available across supported model providers.
Questions about security?
Reach us at security@havelin.tech