> For the complete documentation index, see [llms.txt](https://boundaryai.gitbook.io/boundaryai-docs/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://boundaryai.gitbook.io/boundaryai-docs/help/security-and-compliance.md).

# Security & compliance

BAI Analytics follows industry-leading security practices to keep your feedback data safe:

* **Two-factor authentication (2FA)** for all accounts
* **Data encryption** at rest and in transit
* **Region-specific servers** for data-residency compliance
* **Strict access controls** to protect your data
* **External penetration testing** to find and fix vulnerabilities
* **Ongoing compliance monitoring by Vanta**

## Request a compliance report

We can share a **real-time security and compliance report** on request. Contact **<info@boundary-ai.com>** or your account manager.

## Control access within your workspace

You also control who can see and do what inside BAI Analytics:

* **Organisation roles**: Admin, Member, and Viewer set what each person can do across the workspace.
* **Feedback group sharing**: share an individual group as Read-only or Read-write to scope access to a specific project.

See [Settings](/boundaryai-docs/account-and-administration/updating-settings.md) for managing members and roles.
