Updated: September 18, 2026
Welcome to the GuardLight.ai Trust Center. We are committed to protecting the security, privacy, availability, and integrity of our products and services.
This page provides information about how we safeguard customer data, manage security risks, and maintain trust with our customers and partners.
Security is incorporated into our products, infrastructure, and business processes. Our security program includes:
Access controls based on job responsibilities and least-privilege principles;
Encryption of data in transit and, where appropriate, at rest;
Multi-factor authentication for sensitive systems and administrative access;
Continuous monitoring, logging, and alerting;
Secure software-development and change-management practices;
Vulnerability management and regular security testing;
Employee security and privacy training;
Incident-response and business-continuity procedures; and
Regular review of third-party service providers.
We evaluate our security and privacy practices against applicable legal, regulatory, and industry requirements.
Additional documentation may be available to eligible customers under a confidentiality agreement. Contact us at inquiry@GuardLight.ai to request access.
We process customer data only for authorized business purposes and in accordance with our agreements and applicable policies.
Our privacy practices are described in our Privacy Policy and, where applicable, our Data Processing Agreement. Customers remain responsible for configuring their use of the Service appropriately and for determining what information they submit.
The Service is hosted using Google Sites. We use redundancy, monitoring, backup procedures, and recovery processes designed to support the availability and resilience of the Service.
Our development and application-security practices may include:
Code review and approval procedures;
Dependency and vulnerability scanning;
Automated security testing;
Periodic penetration testing;
Secrets-management controls;
Secure configuration standards; and
Security review of significant product and infrastructure changes.
Access to systems and customer data is limited to authorized personnel who require access to perform their job responsibilities. Access is reviewed periodically and removed when no longer required.
Administrative access is protected with appropriate authentication, authorization, logging, and monitoring controls.
We retain customer data in accordance with applicable agreements, product requirements, and legal obligations. When data is no longer required, we use procedures designed to delete or anonymize it within applicable retention periods.
Specific retention and deletion terms may vary by product, contract, and customer configuration.
We maintain an incident-response program designed to identify, investigate, contain, remediate, and learn from security incidents.
If we determine that an incident affects customer data, we will provide notice in accordance with applicable law and our contractual obligations. Notices may include information about the nature of the incident, affected data, actions taken, and recommended steps.
We encourage security researchers and customers to report suspected vulnerabilities responsibly.
Please submit reports to: inquiry@GuardLight.ai
When reporting a vulnerability, include enough information for us to reproduce and investigate the issue. Please do not access, modify, or disclose data belonging to other users.
We assess relevant third-party service providers before engaging them and periodically review their security and privacy practices.
Customers may contact inquiry@GuardLight.ai with questions about our third-party providers.
We maintain business-continuity and disaster-recovery procedures designed to support the continued operation of critical services during disruptive events. These procedures are tested and reviewed periodically.
Recovery objectives may vary by product and service. Additional information may be available to customers under applicable confidentiality terms.
Personnel with access to company systems or customer data receive security and privacy training appropriate to their roles. We maintain policies addressing acceptable use, access management, confidentiality, incident reporting, and secure handling of information.
For questions about security, privacy, compliance, or this Trust Center, contact: inquiry@GuardLight.ai