ProductIndustriesPumps & Fluid HandlingCompressors & Rotating EquipmentValves & Flow ControlInstrumentation & ControlsIndustrial AutomationElectrical & PowerSolutionsApplications Engineering AutomationQuote AutomationProduct Selection & ConfigurationVendor Pricing AutomationOrder AutomationPricingCompany Log in Contact Book a demo
Security

Your catalogs, your quotes, your customers. Yours.

Axle processes some of the most commercially sensitive data a distributor has: costs, margins, customer pricing and vendor terms. Here is how it's protected, stated as what is true today rather than what we intend.

Architecture

How your data is handled.

Encryption

  • All traffic encrypted in transit with TLS
  • Data and generated documents encrypted at rest

Isolation

  • Each customer's data is logically isolated: every query is scoped to your organization and every stored file is keyed to it
  • Dedicated single-tenant deployments available for customers who require physical separation

Access

  • Individual accounts, hashed credentials, role-based permissions
  • Time-limited, single-use invite and password-reset links
  • Accounts deactivated rather than deleted, so history stays intact

Audit trail

  • Every draft, edit, approval and send is versioned and logged
  • Every price carries its source and its date

Human control

  • Human approval on every job by default
  • Autonomy levels set per class of work, changeable at any time
  • Pricing changes proposed by Axle queue for a human decision; it never changes pricing on its own

Resilience

  • Continuous backup with point-in-time recovery of production data
AI & data policy

Your data trains Axle for you. Not for anyone else.

  • Axle does not use customer data to train general models made available to other customers
  • Learning from your corrections and approved jobs happens inside your deployment, for your deployment
  • Sizing and pricing calculations run in deterministic code, not in a language model
  • Subprocessors are published in the Data Processing Agreement, with 14 days' notice of any change
  • Security breach notification to affected customers within 48 hours of discovery
  • Data returned in a standard format or deleted on request
Certifications

Stated plainly.

Axle does not currently hold SOC 2 or ISO 27001 certification. SOC 2 Type II is on our roadmap. We'll list certifications on this page when they're achieved, not before. Until then, our security controls are described above and contractually committed in the Service Terms and DPA, and we answer security questionnaires from customers directly.

Questions about any of this: hello@getaxle.ai.

Have a security questionnaire?

Send it over. We answer them directly, usually within a week.