Trust Centre

AI that is transparent, auditable, and in your control.

We believe the businesses that adopt AI responsibly will build more durable advantages than those that adopt it carelessly. Everything Myntriq does is designed to make responsible adoption possible for your organisation — not just ours.

Request EvaluationSecurity OverviewLast updated: 28 September 2026
Our commitment to trust

MyntriqOS operates in your business, with your data, on your behalf.

We take that seriously.

This Trust Centre is not a legal notice. It is a resource — for your team, your security reviewers, your procurement function, or the customers who ask how you manage AI. Everything here reflects how we actually operate, not how we aspire to.

Have a question that is not answered here? Email info@myntriq.io — we respond within two business days.

Common questions

FAQ — Quick Answers

Do you train AI models using my data?

No. Myntriq does not use your data to train its own AI models. Every third-party model provider we use is contractually barred from training on API customer data — with one transitional exception, Moonshot AI, whose current terms permit training use until a written restriction is in force; that route is limited to lower-sensitivity workloads and the exception is recorded, dated, in the Subprocessor List.

Where is my data stored?

Your platform data — conversations, documents, agent configurations, and business data — is stored in a managed cloud database hosted in Singapore, on cloud infrastructure certified to ISO/IEC 27001 and SOC 2. AI model inference is processed by the providers named in the Subprocessor List — the authoritative register, with jurisdictions and retention postures disclosed there.

Which AI models does Myntriq support?

MyntriqOS routes inference across a governed slate of commercial and open-weight models from Anthropic, OpenAI, Google, Alibaba Cloud, Moonshot AI, and OpenRouter, plus embeddings on Myntriq's own infrastructure. The current slate is recorded in the Subprocessor List and Model Governance Policy. Organisation administrators can configure which models are available to their users.

How are AI actions governed?

Every AI agent operates at an autonomy level set by your administrator. The default is that the agent queues actions for approval before executing them. Every action is recorded in the audit log.

How does tenant isolation work?

Tenant separation is enforced so each organisation's users, records, documents, and agent activity remain scoped to that organisation.

Do I need separate AI subscriptions to use MyntriqOS?

No. Access to AI models is included in your MyntriqOS subscription. Myntriq manages the model provider relationships on your behalf.

Who owns the data I upload?

You do. Myntriq claims no ownership over customer content — documents, conversation history, agent configurations, business data, and prompts. You grant Myntriq a limited licence to process it solely to provide the platform services, and that licence ends when your account is terminated.

View all frequently asked questions →
Security and reliability

Built for security and reliability

MyntriqOS is designed around controlled access, tenant separation, governance, auditability, data protection, and reliable operation. The goal is simple: your business should be able to adopt AI with clear controls and a record of what happened.

Authentication

Controlled sign-in, session handling, and access rules help ensure the right people reach the right systems.

Governance

Approval queues, role-based access, and autonomy controls keep AI activity within the boundaries set by the business.

Auditability

Agent activity is logged so decisions, actions, and costs can be reviewed when needed.

Data protection

Customer data is handled with tenant separation, secure storage practices, and controlled processing flows.

Reliability

Production operations are designed around resilient infrastructure practices, monitoring, and controlled change.

Certification posture

Our current certification posture

Myntriq is an early-stage company. We do not currently hold third-party security certifications in our own name. What we can show today is specific: tenant isolation enforced by row-level security, encryption in transit and at rest, a full audit log of every agent action, and cloud infrastructure certified to ISO/IEC 27001 and SOC 2 beneath it — with the Subprocessor List as the named register of the providers that deliver the service.

If you are a procurement team with specific certification requirements, contact us — we are happy to provide the evidence of controls we have in place and discuss your timeline.

Questions?

Questions? We are here.

If you have questions about our privacy, security, or data handling practices — or if you need documents for your procurement process — contact us directly.

We respond to trust and security enquiries within two business days.

Email: info@myntriq.io