Legal entity
SENTR Technologies Ltd
England and Wales. Data roles and processing purposes are agreed in the contract and Data Processing Agreement (DPA).
Company · Security & data
Security, privacy, legal and procurement should see hosting posture, data handling and known gaps without a pitch. Where evidence is incomplete or gated, we say so—and point to the review path.
Current facts buyers can inspect. Contract documents win when detail is customer-specific.
Legal entity
SENTR Technologies Ltd
England and Wales. Data roles and processing purposes are agreed in the contract and Data Processing Agreement (DPA).
Hosting
AWS Ireland & Germany
eu-west-1 and eu-central-1. Residency specifics confirmed in contract documentation.
Subprocessors
AWS · OpenAI (EU endpoints)
OpenAI used for explanation rendering only on EU endpoints. Full schedule lives in the DPA.
Access
Need-to-operate
Access restricted to authorised personnel required to operate or support the service.
Encryption in transit
Standard on supported paths
API and webhook paths use encryption in transit. At-rest and key-management detail via security review.
Audit & logging
Decision & config attribution
Recorded decisions, overrides and configuration changes support review and export. Retention is agreed for your deployment.
Shadow Mode boundary
Read-only while evaluating
Qualified comparison does not change production decisions. Promotion is a separate committee decision.
Retention & deletion
Contractual
Retention periods, deletion arrangements and the evidence your team needs are agreed in contract.
Certifications
SOC 2 & ISO 27001 in progress
SENTR is in progress of getting certified for both SOC 2 and ISO 27001, planned to complete before the end of the year. Discuss mandatory certification requirements during security review.
Conceptual flow for evaluators—not a network diagram substitute. Integration depth lives on Data & integrations.
Events and fields you map—file, REST, webhook, DB or stream.
Rules, scoring and policy on the decision layer you configure.
Contribution, overrides and audit exports for operators and deployers.
Security pack and DPA path when procurement needs restricted detail.
Supported ingestion includes customer-supplied file, REST, CSV, webhook, database or stream access with field mapping. History backfill and identifier quality determine what investigations and comparisons can honestly claim. Data & integrations →
SOC 2 and ISO 27001 certification are in progress and planned to complete before the end of the year. If your assessment requires a penetration-test report, retention evidence or another supporting document, ask us to confirm its availability, scope and date.
We will confirm which documents are available and any access conditions during your security review.
Request a security review — or Book a Session if the commercial path is already clear.