Legal

Security & IT Overview

Security, privacy, and system design for enterprise life sciences teams

Last updated

Jan 9, 2026

Overview of the Platform

Cytodyme is a cloud-native, multi-tenant platform designed to support quality and regulatory documentation workflows in life sciences. Security, privacy, and data isolation are built into the platform architecture and operating processes.

  • Cloud-native deployment on Google Cloud Platform

  • Tenant-isolated data storage and access

  • Designed to support use in quality and post-market environments


Infrastructure & Data Isolation

Infrastructure and isolation

  • Cloud provider: Google Cloud Platform

  • Internal services are private by default and exposed only via authenticated endpoints

  • Each customer is provisioned an isolated PostgreSQL database and dedicated object storage

  • Access is scoped by per-tenant service accounts and roles

Identity, Access, and Auditability

Identity, access, and audit controls

  • Enterprise authentication via OAuth 2.0, OIDC, and SAML with supported IdPs

  • Role-based access control at tenant and resource levels

  • Immutable, time-stamped audit logs for user and system actions

  • Audit trails available in-app and exportable for review

Encryption, Retention, and Recovery

Data protection and recovery

  • Encryption in transit using TLS 1.2+

  • Encryption at rest for databases, backups, and object storage

  • Configurable data retention policies, including hard deletion on request

  • Continuous database backups with point-in-time recovery and documented restore procedures

AI Usage and Limitations

AI usage and limitations

  • AI features assist with drafting, structuring, and surfacing information

  • AI outputs are designed to support human review, not replace judgment

  • Cytodyme does not train models on customer data

  • Customer data is not shared between tenants or used for model training

Opting Out or Disabling AI

Organizations may:

  • Disable specific AI-assisted features

  • Require human review before outputs are surfaced

  • Restrict AI usage to non-sensitive workflows

Contact [email protected] to discuss configuration options.

Contact

Security and IT questions

Email: [email protected]

Jump to

Share policy

Share policy

Share policy