AEGRIX SHIELD
Trust Center

AEGRIX Shield is the compliance tier of our autonomous-robotics security platform. We hold our own platform to the standards we help our customers meet.

Uptime target 99.9%security.txtVulnerability disclosureAdvisories
Certifications & attestations
SOC 2 Type II
Controls implemented; observation period underway.
In progress
ISO/IEC 27001:2022
ISMS established; certification audit scheduled.
In progress
Penetration test
Independent third-party test; summary letter available under NDA.
Annual
GDPR / DPA
Data Processing Agreement and processing records per tenant.
Available
EU CRA self-assessment
Shield is assessed against the same CRA controls it reports on.
Available
Security practices
Encryption in transit
available
TLS for all console and agent traffic; optional mTLS for device ingest.
Report integrity
available
Per-device Ed25519-signed, non-repudiable reports (Ed25519 + HMAC).
Device authentication
available
Per-device keys with rotation; available.
Access control
✓ enforced
Role-based access (Org Admin / Analyst / Operator / Auditor), default-deny.
Single sign-on
✓ enforced
SAML 2.0 (signed-assertion validation) + OIDC, SCIM 2.0 provisioning.
Audit logging
✓ enforced
Append-only audit trail of privileged actions, exportable.
Multi-tenancy
✓ enforced
Per-tenant data isolation across every record.
Deployment
✓ enforced
SaaS, on-prem, or fully air-gapped — no outbound egress in air-gap mode.
Data residency
✓ enforced
Region pin: EU.
Data retention
✓ enforced
365 days, then purged.
Sub-processors
NAMEPURPOSEREGION
Self-hosted (customer infra)On-prem / air-gapped deployments require no sub-processors.Customer
Security questions or to request our SOC 2 / pen-test summary: security@aegrix.io