Security Practices
Docamint follows strong security principles to protect your templates, payloads, and generated documents. While Docamint does not claim formal certifications such as SOC 2 or PCI, it is designed with enterprise-grade security controls and can operate inside your own environment for maximum isolation.
Encryption
Encryption Everywhere
All traffic is encrypted in transit using HTTPS/TLS. Templates and any data you choose to store in Docamint
Cloud are encrypted at rest in tenant-specific storage.
Isolation
Environment Isolation
Customer environments are isolated from one another. Self-hosted deployments ensure that all data remains
entirely within your own cloud or data center.
Access
Customer-Controlled Access
User authentication and access roles are managed by your calling application. Docamint authenticates
each API request with your API key and processes only the templates and payloads that request supplies.
Data
Secure Data Handling
Docamint processes your data only to generate documents. No payloads are used for training, analytics,
or shared with third parties. You retain full ownership of your content.
Logging
Audit Logging
Document generation events can be logged to support traceability and review. Logs include template
versions, timestamps, and processing outcomes.
Deployment
Secure Deployment Options
Docamint can run in our managed cloud or inside your own environment. Self-hosted deployments allow full
control over networking, firewalls, IAM, and data boundaries.
Summary
Security Summary
Docamint’s security model is built on clear principles:
- Encryption in transit (HTTPS/TLS)
- Encryption at rest in tenant-specific storage
- Access controlled by your application via API keys
- No training or analytics on customer data
- Audit logs for traceability (no PII)
- Self-hosted option for maximum control
These practices help ensure that your data remains protected, controlled, and isolated according to your organization’s security requirements.