Core Security Principles
Privacy-First Architecture
No Data Storage
Your data isn’t stored, spreadsheet content is processed in real-time and deleted after each request, except for chat history if enabled.
Encryption in Transit
All data is encrypted using TLS 1.2 or higher during transmission between your device and our servers.
LLM-Agnostic
Choose your AI provider. Select from OpenAI, Anthropic, Mistral, Gemini, or bring your own API key.
LLM Protection
Our partnerships ensure your data is never used for AI model training by any provider.
How Your Data Flows
1
Data Processing
When you interact with Elkar, your spreadsheet data is:
- Encrypted before leaving your device
- Processed in real-time on secure servers
- Analyzed by our AI orchestration layer
- Returned with results to your spreadsheet
- Never used for re-training
2
Automatic Deletion
After processing:
- Spreadsheet content is immediately deleted
- Zero data retention beyond active session
- No conversation history stored
- Processing logs contain no sensitive data
- Results are delivered directly to your Excel/GSheets
3
Optional Chat History
If enabled, only conversation text is stored:
- Conversation textencrypted and stored
- Access previous conversations across sessions
- Can be disabled and deleted anytime from dashboard settings
Enterprise Security Options
For organizations with advanced security requirements:
On-Premise Deployment
Deploy Elkar entirely within your infrastructure for complete data control.
Direct LLM Connection
Connect your own LLM APIs directly. Check Bring Your Own Key below.
Custom Security Policies
Implement your organization’s specific security and compliance requirements.
Dedicated Support
Priority support from our team.
Available Enterprise Options:
- Single Sign-On (SSO) integration
- Role-based access control
- Custom data residency requirements
- Bring Your Own Key (BYOK)
Bring Your Own Key (BYOK)
Maximum Control
Use your own API keys for control while still benefiting from Elkar’s intelligence
- Direct relationship with AI provider
- Complete control over data processing agreements
- Still routed through Elkar for optimal results
Compliance & Certifications
Current Status
SOC2 Type I
SOC2 Type I
Currently undergoing SOC2 certification process to formalize our information security management systems.Expected completion: Q3 2025
GDPR Compliance
GDPR Compliance
Fully GDPR compliant with:
- Right to data deletion
- Data processing transparency
- Minimal data collection principles
- User consent management
Transparency & Control
What you can control from your dashboard:
- Enable/disable chat history
- Delete conversation history
- Manage API key settings
- View usage analytics
Security First, Always
We’re committed to maintaining the highest security standards while providing powerful AI capabilities. Your trust is our foundation.
