Loading…
Loading…
Your Odoo credentials and infrastructure data are protected by defense-in-depth architecture. We access the minimum data needed to generate health scores and never touch your business records.
NonaGuard connects to your Odoo instance via read-only XML-RPC and collects only what is needed to assess health and security posture. We never access your business data.
All sensitive data is encrypted both at rest and in transit using industry-standard algorithms.
Each organization’s data is completely isolated at every layer of the stack.
Identity verification and role-based permissions protect every action on the platform.
Defense-in-depth across containers, networking, and runtime to minimize attack surface.
You control when and where your data is analyzed. NonaGuard follows a Bring Your Own Key (BYOK) model for AI features.
The NonaGuard Odoo connector module communicates securely with our API using signed requests and hashed credentials.
We are actively working toward SOC 2 Type II certification. Our infrastructure and data handling practices are designed with SOC 2 trust principles in mind — including security, availability, processing integrity, confidentiality, and privacy. NonaGuard has not yet obtained SOC 2 Type II certification. All architectural decisions documented on this page reflect our commitment to meeting these standards.
If you believe you have found a security vulnerability in NonaGuard, we encourage responsible disclosure. Please report it to security@hexalian.com with a detailed description of the issue, steps to reproduce, and any supporting evidence. We will acknowledge receipt within 48 hours and work with you to understand and address the vulnerability promptly.
We're happy to answer any questions about how NonaGuard protects your data and infrastructure.