Tenant-isolated deployments, end-to-end encryption, and a typed-object data layer that makes cross-firm leakage architecturally impossible.
Every firm runs in its own isolated Palantir Foundry deployment, a sealed black box. Your data, your ontology, your agents. Zero cross-customer access.
Customer data is never used to train foundation models exposed to other customers. Vendor models are called under enterprise terms that prohibit retention.
AES-256 at rest, TLS 1.3 in transit. Customer-managed keys available on enterprise deployments.
Every agent action, query, and output is logged with full lineage. Every figure in a memo links back to its source document.
Agents cannot reach data outside the typed-object graph they have been granted. A Comp Match cannot leak across funds. The type system enforces it.
Deploy on a private Foundry instance your team controls. For NDA-protected deal data, local models keep nothing leaving your network.
Type II controls are live. We're in the observation window.
SOC 2 Type II, ISO 27001, and FedRAMP High authorized. We deploy on top of this base.
Encryption at rest and in transit on every deployment. CMK available on enterprise tier.
Optional dedicated instance on your VPC, with local models for NDA-protected data.
Data-processing and subject-rights controls in build.
Every decision linked to its source, every output auditable, every agent bound by the ontology's type system. The same guarantees that protect classified workflows protect your fund.