FOUNDING 100 White-glove onboarding for selected Shopify brands. Request an invitation →
KLAXIFY TRUST CENTER

Built for governed customer operations.

Understand how klaxify isolates workspace data, protects connected credentials, controls AI and commerce actions, and gives merchants a clear path to their data.

Request an invitation View service status

Tenant isolation

Customer, conversation, knowledge, commerce, automation, and audit records are scoped to the active workspace. Permission checks and tenant filters are applied before app data is read or changed.

Protected connections

OAuth credentials and connection secrets are encrypted before storage. Tokens are never shown in tenant pages, help documentation, AI prompts, or public telemetry.

Governed actions

Shopify changes follow eligibility, permission, policy, approval, execution, verification, and audit checks. A recommended response does not silently grant commerce authority.

Controlled learning

Workspace IQ uses tenant-private policies, products, verified context, and governed outcomes. Learned response behavior uses identity placeholders so customer greetings and sender signatures remain dynamic.

HOW DATA MOVES

Purpose-limited context, visible controls

klaxify retrieves only the context needed to understand and resolve a customer request. Routine patterns can be handled locally; ambiguous or sensitive cases can use an external AI provider under the workspace's configured guardrails.

1Receive

Connected channels import tenant-scoped customer requests with idempotency and delivery telemetry.

2Ground

klax IQ assembles verified order, customer, knowledge, policy, and agent context into a versioned resolution packet.

3Decide

Confidence, risk, required facts, permissions, and approval limits determine whether work is local, supervised, or escalated.

4Audit

Replies, approvals, governed actions, corrections, and administrative changes retain an attributable workspace audit trail.

YOUR CONTROLS

Access and data requests

  • Role-based workspace access
  • Tenant-owned integrations and approval limits
  • Audited workspace export requests
  • Reviewed deletion requests that never execute from one click
Read the data request guide →
INFRASTRUCTURE

Accurate provider wording

klaxify's primary production application is hosted on DigitalOcean infrastructure. Provider certifications describe the provider's controls; they do not by themselves certify klaxify. We do not claim SOC 2, GDPR, CCPA, or PCI certification without a separate, supportable basis.

Ask a security question →
OPERATIONAL TRANSPARENCY

Providers, retention, and support

Capabilities use only the providers relevant to the merchant's configured product and connections.

Current service categories

  • DigitalOcean · primary application and managed infrastructure
  • Google · Gmail connection when authorized by a tenant
  • Shopify · commerce data and governed actions when connected
  • Stripe · subscription checkout and billing portal
  • OpenAI · contextual AI only when klax IQ routing requires it

This list describes current service categories, not provider endorsement or klaxify certification.

Retention and deletion

Operational workspace records are retained while the service is active and as needed for security, audit integrity, billing, backups, or applicable obligations. Workspace owners can request an export or deletion review from Launch Center. Deletion is deliberately reviewed rather than executed from one click.

Read the data request guide →

Support expectations

Workspace support is available at support@klaxify.com. Public status reports monitored service health; Launch Center reports tenant-specific message telemetry. A contractual response time or service-level commitment applies only when it is expressly included in the customer's agreement.

RESPONSIBLE DISCLOSURE

Found a security concern?

Send a clear description, affected URL, reproduction steps, and impact. Do not include customer content or credentials in your first message.

Email security@klaxify.com