HomePlatformUse CasesIntegrationsPricingCustomers
Sign inRequest a Demo
Security

Built with security in mind from day one.

EVE handles CRM data — contact information, behavioral signals, and communication history. We take that responsibility seriously and have designed our infrastructure accordingly.

TLS 1.3
In-transit encryption
AES-256
At-rest encryption

Data Encryption

All data is encrypted in transit using TLS 1.3 and at rest using AES-256. CRM credentials are stored using industry-standard secret management and are never in plaintext at any layer.

Access Controls

Role-based access control (RBAC) is built into the platform. Enterprise customers get SSO (SAML 2.0) and SCIM provisioning. Every access event is logged with a full audit trail.

SOC 2 Controls in Progress

We have implemented the technical and organizational controls designed to meet SOC 2 Type II requirements. Our formal audit is currently underway. We are not yet certified — we will not claim otherwise.

Data Handling

What data EVE accesses

Data CategoryWhat EVE ReadsRetentionDeletion
Contact recordsName, company, email, lifecycle stage, last activity date. Not SSN, payment info, or health data.Duration of subscription + 30 daysImmediate on request
Email engagementOpen/click events from your connected email provider. Not email body content.Duration of subscription + 30 daysImmediate on request
Website behaviorPage views and session duration for known contacts (via JavaScript snippet). IP-level anonymization applied.90 days rollingImmediate on request
CRM activity logCall/meeting/note timestamps. Not content of calls or meeting recordings.Duration of subscription + 30 daysImmediate on request
Sequence responsesReply detection (yes/no), not email body content.Duration of subscriptionImmediate on request
Compliance

Designed with compliance in mind

GDPR-Aware Design
We have designed EVE with GDPR principles in mind: data minimization, purpose limitation, storage limitation, and subject rights. Data residency options available on Enterprise.
CCPA-Aware Design
EVE is designed with CCPA principles in mind, including the right to know, right to delete, and opt-out mechanisms for the contacts in your CRM.
SOC 2 Controls in Progress
We have implemented controls targeting SOC 2 Type II requirements across security, availability, and confidentiality. Formal audit is underway — we are not yet certified.

Security questions?

For security inquiries, vulnerability disclosures, or data handling questions, reach our team directly.

[email protected]