Welcome to the PrimeIntellect Trust Center. PrimeIntellect makes frontier AI training accessible to every company, operating as both a full-stack platform and an open research lab, enabling organizations to train their own models by directly leveraging our state-of-the-art agentic training infrastructure.
This Trust Center provides a comprehensive overview of our commitment to security, privacy, and compliance. Here, you will find detailed information about the policies, controls, and practices we have implemented to protect your data and maintain your trust.
PrimeIntellect maintains a robust security and compliance program to ensure all security controls are implemented to comply with industry best practices, applicable laws, regulations, and contractual obligations. We are dedicated to implementing, monitoring, and managing security controls as they apply to confidentiality, integrity, and availability. Our security team partners with legal to assess the privacy of our internal and external systems and programs, addressing areas such as Identity and Access Management, Application Security, Network Security, Data Retention and Disposal, Encryption, and Logging and Monitoring.
Key aspects of our trust posture include:
- Data Protection: We outline procedures and technical controls for data protection, ensuring data is handled and protected according to its classification requirements and approved encryption standards. Customer data is hosted on Google Cloud Platform (GCP) with replication for redundancy and disaster recovery. All Production Data at rest is stored on encrypted volumes using encryption keys managed by PrimeIntellect.
- Operational Practices: Our policies cover acceptable use of IT assets, with mandatory onboarding and ongoing security awareness training for all personnel. We also have a defined Software Development Life Cycle (SDLC) process that integrates secure development practices at every stage. Access to production systems is logged and guarded by an approval process.
- Vendor Management: We conduct initial risk analysis and ongoing monitoring of vendors, requiring Tier 1 vendors to demonstrate compliance with current ISO 27001 certification, an unqualified SOC 2 Type 2 report, or an equivalent reputable certification. We also ensure proper deprovisioning of vendors when they are no longer needed.
- Continuous Monitoring: PrimeIntellect uses compliance automation software to identify, select, and continuously monitor internal controls.
- Data Retention: Our data retention policy outlines requirements for managing the retention and deletion of data, including specific timelines for customer data based on account status.
This Trust Center is designed to provide transparency and assurance regarding our security and privacy commitments. We invite you to explore the various sections for more in-depth information.
Risk Profile
We have secure, reliable hosting that customers can depend on. We are happy to provide details about our risk mitigation practices and recovery objectives upon request.
Reports
We may provide security-related reports upon request.
Self-Assessments
We are working on our security compliance. We can provide completed questionnaires upon request.
AI
We take the usage of AI seriously in our organization and work to ensure security and reliability of the AI.
ESG
We prioritize and take environmental, social, and governance (ESG) considerations seriously in our operations and decision-making processes.
Legal
We take legal matters seriously and we always engage our legal counsel to review all commercial activities. Please contact us if you have any questions.
