Skip to main content
LeonAI

Security and trust

The LeonAI trust center

Every fact on this page is stated carefully: a certification that exists, an examination in progress, and infrastructure by what actually runs in each product — not by what is pleasant to say.

Certifications and examinations

What is certified, and what is still in progress

ISO/IEC 27001:2022

ISO/IEC 27001:2022 · Certificate 1126333 · IQNet & IQSR

The certification applies to the whole company — LeonAI LTD — as one organization, not to a single product. The certificate and the full scope wording will be published on this page soon.

SOC 2

SOC 2 Type II examination underway with Ernst & Young (Security — Common Criteria), commenced August 2026; report expected Q1 2027.

The examination is underway; the official report has not yet been received, so this is all that is said about it — no more.

Hosting and data location

Where each product actually runs

This table derives directly from each product's infrastructure — not from generic marketing copy.

Hosting and data-location table by product
ProductWhere it runsData location
MCP for PriorityGCP me-west1 (Tel Aviv)Israel
LeonAI PriorityGCP me-west1 (Tel Aviv)Israel
SignFlowCloudflare's global edge networkNot pinned to a country — routed by geographic proximity on the global network
LinksCloudflare's global edge networkNot pinned to a country — routed by geographic proximity on the global network
SecretsCloudflare's global edge networkNot pinned to a country — routed by geographic proximity on the global network

MCP for Priority and LeonAI Priority run on GCP me-west1 in Tel Aviv, and their data stays in Israel. Israel is recognized by the European Union as a country with an adequate level of protection (adequacy). The me-west1 infrastructure egresses from fixed IP addresses you can add to your allowlist: 89.169.97.56 · 46.243.144.4 · 89.169.96.6.

SignFlow, Links and Secrets run on Cloudflare's global edge network — traffic is routed by the visitor's geographic proximity, without pinning the data to a specific country.

What stands behind each product

Architecture highlights by product

MCP for Priority

  • Google Cloud Run (me-west1, Israel).
  • TLS 1.2+ on every hop — client, database, cache and ERP.
  • OAuth 2.1 with mandatory PKCE S256; SSO and 2FA available.
  • AES-256 on managed storage; ERP credentials additionally encrypted with Fernet.
  • Tenant credentials are stored encrypted with PBKDF2 at 480,000 iterations.
  • Per-tenant IP allowlist.
  • Every query, cache key and storage object namespaced by tenant.
  • Secrets are never logged. Passwords, API keys and tokens are excluded from log output by policy and by construction.
  • Every tool call is audited — who called it, which tenant, which tool, what the outcome was, under a request ID that ties the whole request together.
  • Access logs are retained for 24 months, satisfying the Israeli Privacy Protection Regulations' access-logging requirement.
  • Writes are off by default, and each operation is approved once with a signed token valid for 90 seconds.
  • No ERP deletes exist.
  • ISO 27001 certified.
  • SOC 2 Type II in progress.
To the product page

LeonAI Priority

  • All processing and storage for the Service run in Google Cloud region me-west1 (Tel Aviv, Israel).
  • Controlled egress: Cloud NAT with a fixed set of outbound IPs (89.169.97.56, 46.243.144.4, 89.169.96.6) that you can allowlist on your ERP firewall, with full outbound audit.
  • In transit: TLS 1.2+ at the edge; TLS 1.3 enforced edge-to-origin.
  • AES-256 with Google-managed keys across Cloud SQL, Memorystore, Secret Manager, and Cloud Storage backups.
  • Your Priority ERP credentials live in your own Make.com connection vault. LeonAI does not hold that vault.
  • Auth headers and bodies are scrubbed from the logs.
To the product page

SignFlow

  • SignFlow runs on Cloudflare's global edge network
  • Files sit behind an authenticated, fail-closed proxy — no public storage bucket and no pre-signed links.
  • A fail-closed PKCS#7 seal: a document does not complete without a valid seal.
  • An RFC-3161 timestamp from DigiCert on every completed document.
  • A SHA-256 audit chain with anchoring outside the system and a verification endpoint.
  • Documents retained for seven years by default, with deletion refused within the period.
  • An Israeli tax-compliance mode.
  • Google/Microsoft sign-in, TOTP two-factor authentication and SSO with SAML/OIDC.
To the product page

Links

  • Runs on Cloudflare's edge network.
  • Every link is scanned against Google Safe Browsing on creation, update and import, and rescanned every ten minutes — with automatic suspension and a warning page for the visitor.
  • Strict CSP and HSTS policies.
  • TOTP two-factor authentication and organizational sign-in with Google or Microsoft.
  • Email address verification before a link can be created.
  • API keys are stored as a hash and shown only once, with eight scopes to limit permission.
  • GDPR and CCPA/CPRA compliant out of the box — consent, export, and deletion built in.
To the product page

Secrets

  • Data is stored on Cloudflare's global edge network using D1 (SQLite), R2 (object storage), and KV (key-value storage). All data is encrypted at rest.
  • The server never stores the encryption key.
  • Encryption happens in the browser with AES-256-GCM via Web Crypto.
  • The secret is deleted from storage before the response is sent to the recipient.
  • Three wrong password attempts destroy the secret.
  • Expiration — between five minutes and thirty days — is enforced at the storage layer.
  • IP addresses are anonymized after 30 days, and audit logs are deleted after 90 days.
  • A CSP policy with a nonce regenerated for every request.
To the product page

Data protection

How your data is protected

Sub-processor register

The companies that process data on our behalf, and what they do with it.

  • Google Cloud — Israel (me-west1)
  • Cloudflare
  • Make — EU (connection vault)
  • SUMIT — Israel (billing/payments)
  • Resend (email)

Data processing agreement

A DPA (data processing agreement) is available on request — write to us at the contact details at the bottom of the page.

Security incident response

The incident-response process operates under Israel's Privacy Protection Law, including Amendment 13, and under GDPR.

Log retention and backups

Logs are kept for 30 days. The daily backups are encrypted, with PITR (Point-in-Time Recovery) for restoring to an exact point in time.

Found a security issue?

We'd be glad if you reported it to us directly — before someone else exploits it.

info@leonai.io