XecSuite is a governed AI operating layer, which means control and ownership are the product — not an afterthought. For a 3PL, that also means the IT and security review is the real gate, so here is exactly how your data, your tenant, and your actions are handled.
Company memory, evidence, embeddings, and transcripts are yours. They are exportable anytime in open formats and deleted on termination — no lock-in, no hostage data.
Open-format export of memory, evidence, embeddings, and transcripts
Export available at any time, not just at offboarding
Full deletion on termination
Your data never trains shared models
Your operating context stays inside your private tenant. It is never used to train external or shared models — not ours, not a vendor’s.
No client data used to train external or shared models
Private context stays scoped to your tenant
Hybrid routing keeps high-volume work on private models
Tenant isolation enforced by Postgres RLS
Every tenant is isolated at the database layer using Postgres row-level security, so one company’s context can never bleed into another’s.
Row-level security (RLS) enforced per tenant
Permission-aware access by user and role
Clear labels for live, manual, demo, stale, or missing data
Sovereign Canadian hosting available
For engagements that need it, data can be hosted on sovereign Canadian infrastructure, with connectors scoped per stack that terminate on disconnect and private endpoints per connector.
Sovereign Canadian hosting available
Connectors scoped per stack, with least-privilege access that terminates on disconnect
Dedicated private infrastructure and ZDR agreements on Enterprise
Approval-gated actions
XecSuite drafts and recommends; your team decides. Anything outbound or irreversible requires human sign-off before it happens.
Human approval before anything outbound or irreversible
Drafts and recommendations, not autonomous actions
Source-backed answers with citations, confidence, and freshness
Hosted model adapters are managed infrastructure
Private model adapters are XecSuite-managed infrastructure tuned to your operation. They are not transferable and are destroyed on termination — while your underlying data stays exportable and yours.
Adapters are XecSuite-managed infrastructure, not transferable
Adapters and models destroyed on termination
Per-company budget governance over hybrid model routing
Every one of these controls is scoped and confirmed during implementation — so your IT and security team knows exactly where your data lives, who can see it, and what happens when an engagement ends, before anything goes live.
Talk to us about controls
Need residency, retention, or isolation specifics for your scope?
Tell us how your company needs to handle data. We will map the exact controls — residency, RLS isolation, export, deletion, and approval gates — to your engagement before anything goes live.