// Security & trust

Secure by design.

Quarri sits on enterprise infrastructure with database-per-customer isolation, end-to-end encryption, full audit logging, and customer-controlled data residency.

// Built on
  • AWS cloud infrastructure
  • Isolated data platform
  • Anthropic Claude
// Promised
  • Database-per-customer
  • US / EU residency
  • No model training
01 / 06
// Foundations

Built on infrastructure that's already certified.

Quarri runs on AWS for cloud infrastructure and a SOC 2 Type II data platform - and connects to Anthropic's Claude for reasoning. We inherit their compliance and add tenant isolation on top.

// Cloud infrastructure

AWS.

Multi-AZ deployment in US or EU regions. SOC 2, ISO 27001, FedRAMP certified. Customer chooses the region; data never leaves it.

// Data platform

Isolated by design.

SOC 2 Type II data platform with database-per-customer at the platform level - physically isolated, OAuth-bound, encrypted at rest with AES-256.

// AI integration

Anthropic Claude.

Used for reasoning over your data via Quarri's tools. Customer data is never used to train models. Subject to Anthropic's enterprise data terms.

02 / 06
// Tenant isolation

Your data, in your database. Always.

Every customer gets their own isolated database at the platform layer. No shared tables. No application-level cross-tenant access. OAuth tokens are bound to a single customer database - there is no API path that could read another customer's data.

0
Cross-tenant
access paths
1:1
Customer to
database mapping
OAuth
Token-bound
to your tenant
AES-256
Encryption at rest
per tenant
03 / 06
// Encryption & residency

Encrypted in transit and at rest. Hosted where you choose.

Standard cryptography end-to-end, with full customer choice over data residency.

01 In transit.
TLS 1.2+ on every connection· HSTS enforced· Certificate pinning where supported· No plaintext data transmission
02 At rest.
AES-256 encryption (MotherDuck / AWS managed keys)· Geo-redundant snapshots within region· Encrypted credential storage
03 Residency.
US-only hosting available· EU-only hosting available· Choice locked at provisioning - data does not move regions· GDPR-aligned for EU customers
04 / 06
// Access & audit

Least-privilege access. Every action logged.

Role-based access control with quarterly reviews. Comprehensive audit trail accessible to customers on request.

01 Authentication.
Unique credentials per user· 12+ character password complexity· Failed-login monitoring & account lockout· SSO / SAML on the roadmap
02 Authorisation.
RBAC: Admin and User role separation· Principle of least privilege· Access rights reviewed quarterly· Immediate revocation on offboarding
03 Audit trail.
Full query history per user· Authentication events (success and failure)· Configuration changes & admin actions· Customer-accessible logs on request· Immutable retention for the customer relationship
05 / 06
// What we don't do

What we won't do.

Four explicit promises. Written into our policy. Enforced at the architecture level.

01

No PII or PHI storage.

Quarri does not store personally identifiable information or protected health information. Data scope is contractual.

02

No model training.

Customer data is never used to train Quarri's models, nor passed to Anthropic for training under our enterprise terms.

03

No cross-tenant access.

No application or API path exists to read another customer's data. Isolation is enforced below the application layer.

04

No user-injected code.

Users cannot directly inject or execute code. Pipelines are generated only by controlled AI agents in subprocess isolation.

06 / 06
// Reliability & recovery

99.9% uptime. Recovery in hours, not days.

Documented disaster recovery plan with continuous backup, regional redundancy, and a 72-hour customer-notification commitment for any incident affecting your data.

99.9%
Uptime SLA
(measured monthly)
4 hr
Recovery time
objective (RTO)
1 hr
Recovery point
objective (RPO)
30 days
Snapshot retention
geo-redundant
Continuous database replication Daily integrity verification Annual full DR test 72-hour customer notification on incidents

Live in two weeks.

See Quarri running on your own data - securely.