Overview
Security is designed into Skynet's architecture, not bolted on afterward. From encryption to on-premise deployment, Skynet is built with security-conscious organizations in mind, and this page describes the practices we follow to protect your data.
Infrastructure security
Skynet runs on reputable cloud infrastructure with physical and network protections managed by our providers. Production environments are isolated from development and staging, and access between them is tightly controlled.
Encryption
Skynet encrypts data both in transit and at rest:
- In transit: traffic between clients and our servers is encrypted using TLS.
- At rest: stored data is encrypted using industry-standard algorithms.
- Enterprise: encryption keys can be managed within your own infrastructure rather than Skynet's, and AI processing can run entirely on your own data centre, cloud, or infrastructure of choice.
Access control
Access within Skynet is governed by:
- Role-based access control (RBAC) to define who can access what data and features.
- Organization-wide AI governance, so admins can view, control, and optimize AI usage across all teams and members.
- Selective memory controls, so admins set policies on what enters collective memory versus what stays private.
- Third-party API controls, so Enterprise admins can enable or disable external LLM API connections.
Internally, access to production systems is restricted on a least-privilege basis and protected with strong authentication.
Monitoring and incident response
We log and monitor our systems for anomalous activity and maintain an incident-response process to investigate and remediate security events. If an incident affects your data, we will notify you in accordance with applicable law.
Compliance frameworks
Skynet Enterprise is built to meet compliance frameworks including SOC 2 Type 2, ISO 27001, ISO 42001, and GDPR. See the Enterprise plan or Security & compliance for current details.
Responsible disclosure
We welcome reports from security researchers. If you believe you have found a vulnerability in Skynet, please report it to admin@team.skynet.io with enough detail to reproduce the issue. We ask that you give us a reasonable opportunity to investigate and address a report before disclosing it publicly, and we will not pursue legal action against good-faith research conducted under this policy.
Contact
For security questions, reach our team at admin@team.skynet.io.