Trust

Security

Coraleye works because teams trust it with the record of their customer relationships. Here is how we protect that, and who else touches it.

Your data stays yours

You own the data you connect to Coraleye. We process it to provide the service, and for nothing else — we do not sell it, share it with other customers, or use it to build a product for anyone but you.

Separation between customers

Every customer’s data is isolated, and that separation is enforced by our infrastructure rather than left to application logic. A request made in one workspace cannot reach another’s data, and the boundary is applied to every query by default rather than added case by case.

Encryption

Customer data is encrypted in transit and at rest. Connections to Coraleye are served over HTTPS only, and traffic between our own services is encrypted as well.

Connected accounts

When you connect a system like your CRM, email, or Slack, Coraleye requests the narrowest access the provider offers — read-only wherever that is available. Credentials are encrypted and never stored in readable form, their use is logged, and you can disconnect any source at any time.

AI and your data

Customer data is never used to train models shared across customers. Any tenant-specific fine-tuning happens only with that customer’s written consent.

Retention and deletion

We retain your data for as long as your account is active or as needed to provide the service. When you ask us to delete it, or the engagement ends, we remove it from our production systems.

Subprocessors

Services that may process customer data on our behalf, and what each one is for.

AWS
Hosting and infrastructure for the service.
Anthropic
AI models used to generate summaries, insights, and drafted plays.
OpenAI
AI models used for search and retrieval.
HubSpot
Your CRM data when you connect it as a source, and enquiries submitted through this site.
Google
Sign-in, and Gmail or Calendar data when you connect them as a source.

A complete and current subprocessor list is available on request. See our Privacy Policy for how each is used.

Security reviews and questionnaires

Send us your security questionnaire, your vendor requirements, or a specific question, and we will answer it directly — including anything about our architecture that this page does not cover. We are happy to talk to your security team before a demo rather than after.

Contact us