Built for the buyer
whose auditor asks.
Vered runs regulated manufacturers, so security is not a page — it is how the product is built. Every claim below is enforced in code and points at where. Not asserted — provable.
Your data cannot reach another tenant
Isolation is enforced at the database on every write — not left to application code to remember. We verify it, and a standing check fails the build if a new write could ever bypass it.
Least privilege, proven role by role
Not a claim on a slide — we log in as each role and confirm it reaches exactly its granted modules and nothing else.
The AI is barred from what it must never do
For a regulated buyer this is the question that matters, and the answer is a mechanism, not a promise: the prohibitions are enforced when the code loads.
Yours to inspect, yours to leave with
Bring your security team. We’ll show you the controls.
This page describes implemented controls and their references. For a questionnaire or a diligence request, we’ll walk your team through each control in detail — and hand them the evidence.
For current assurance status, operational evidence and any open items, request a security review with the Vered team.