Security Practices

Docamint follows strong security principles to protect your templates, payloads, and generated documents. While Docamint does not claim formal certifications such as SOC 2 or PCI, it is designed with enterprise-grade security controls and can operate inside your own environment for maximum isolation.

Encryption
Encryption Everywhere
All traffic is encrypted in transit using HTTPS/TLS. Templates and any data you choose to store in Docamint Cloud are encrypted at rest in tenant-specific storage.
Isolation
Environment Isolation
Customer environments are isolated from one another. Self-hosted deployments ensure that all data remains entirely within your own cloud or data center.
Access
Customer-Controlled Access
User authentication and access roles are managed by your calling application. Docamint authenticates each API request with your API key and processes only the templates and payloads that request supplies.
Data
Secure Data Handling
Docamint processes your data only to generate documents. No payloads are used for training, analytics, or shared with third parties. You retain full ownership of your content.
Logging
Audit Logging
Document generation events can be logged to support traceability and review. Logs include template versions, timestamps, and processing outcomes.
Deployment
Secure Deployment Options
Docamint can run in our managed cloud or inside your own environment. Self-hosted deployments allow full control over networking, firewalls, IAM, and data boundaries.

Summary
Security Summary
Docamint’s security model is built on clear principles:
- Encryption in transit (HTTPS/TLS) - Encryption at rest in tenant-specific storage - Access controlled by your application via API keys - No training or analytics on customer data - Audit logs for traceability (no PII) - Self-hosted option for maximum control

These practices help ensure that your data remains protected, controlled, and isolated according to your organization’s security requirements.