1. Purpose
This statement summarizes Tanero’s security approach without disclosing confidential architecture, internal routing, implementation details, or trade secrets.
2. Security Program
Tanero applies commercially reasonable administrative, technical, and organizational measures designed to protect the confidentiality, integrity, and availability of information processed through the Services.
3. Access Controls
Access to production systems and sensitive information is limited according to role, business need, authentication controls, and authorization procedures.
4. Data Protection
Tanero may use encryption in transit, access restrictions, logging, monitoring, backups, isolation controls, and secure configuration practices where appropriate to the system and data involved.
5. Development and Change Management
Tanero uses controlled development, testing, review, deployment, and change-management processes intended to reduce defects and unauthorized changes.
6. Incident Management
Tanero maintains procedures to identify, investigate, contain, remediate, and document suspected security incidents and to provide notices where required by law.
7. Business Continuity
Tanero uses commercially reasonable backup, retry, recovery, monitoring, and continuity measures. No system is immune from interruption, data loss, provider failure, cyberattack, or force-majeure events.
8. Customer Responsibilities
Customers must protect account credentials, configure permissions appropriately, maintain secure devices, remove unauthorized users, review account activity, and notify Tanero promptly of suspected compromise.
9. Responsible Disclosure
Security concerns may be reported to team@tanero.ca. Researchers must not access, alter, retain, disclose, or disrupt data or systems beyond what is necessary to demonstrate a suspected issue.
10. No Architecture Disclosure
This statement does not require Tanero to identify internal providers, system components, source code, models, prompts, orchestration methods, infrastructure design, or confidential safeguards.
11. Changes
Tanero may update its security controls and this statement as the Services, threats, and legal requirements evolve. Effective date: August 2, 2026