Company · Security & data

Security facts. Open questions. Clear next steps.

Security, privacy, legal and procurement should see hosting posture, data handling and known gaps without a pitch. Where evidence is incomplete or gated, we say so—and point to the review path.

  • EU AWS regions stated
  • Certifications not held—said plainly
  • Restricted packs via security review

Control index

Current facts buyers can inspect. Contract documents win when detail is customer-specific.

Legal entity

SENTR Technologies Ltd

England and Wales. Data roles and processing purposes are agreed in the contract and Data Processing Agreement (DPA).

Hosting

AWS Ireland & Germany

eu-west-1 and eu-central-1. Residency specifics confirmed in contract documentation.

Subprocessors

AWS · OpenAI (EU endpoints)

OpenAI used for explanation rendering only on EU endpoints. Full schedule lives in the DPA.

Access

Need-to-operate

Access restricted to authorised personnel required to operate or support the service.

Encryption in transit

Standard on supported paths

API and webhook paths use encryption in transit. At-rest and key-management detail via security review.

Audit & logging

Decision & config attribution

Recorded decisions, overrides and configuration changes support review and export. Retention is agreed for your deployment.

Shadow Mode boundary

Read-only while evaluating

Qualified comparison does not change production decisions. Promotion is a separate committee decision.

Retention & deletion

Contractual

Retention periods, deletion arrangements and the evidence your team needs are agreed in contract.

Certifications

SOC 2 & ISO 27001 in progress

SENTR is in progress of getting certified for both SOC 2 and ISO 27001, planned to complete before the end of the year. Discuss mandatory certification requirements during security review.

How data moves through the operation

Conceptual flow for evaluators—not a network diagram substitute. Integration depth lives on Data & integrations.

Ingest

Events and fields you map—file, REST, webhook, DB or stream.

Decide

Rules, scoring and policy on the decision layer you configure.

Evidence

Contribution, overrides and audit exports for operators and deployers.

Review

Security pack and DPA path when procurement needs restricted detail.

Supported ingestion includes customer-supplied file, REST, CSV, webhook, database or stream access with field mapping. History backfill and identifier quality determine what investigations and comparisons can honestly claim. Data & integrations →

Certification and supporting evidence

SOC 2 and ISO 27001 certification are in progress and planned to complete before the end of the year. If your assessment requires a penetration-test report, retention evidence or another supporting document, ask us to confirm its availability, scope and date.

Request supporting documents

We will confirm which documents are available and any access conditions during your security review.

Procurement & legal

Public facts first. Evidence on request.

Request a security review — or Book a Session if the commercial path is already clear.

Limitations

Your privacy choices

Choose how you use SENTR. Your enquiry, chat and booking do not depend on accepting analytics.

Essential functionality Always active

Delivers and secures the site, remembers this choice and supports the chat or booking you request.

Measures page visits, feature use and enquiry journeys, including recognised campaign sources. Uses analytics cookies. Form answers and chat messages are not sent to Google Analytics.

Advertising trackers are disabled. The same choices apply to UK and EU visitors.

We remember this choice on this browser for up to six months. Changing an active analytics choice reloads the page to stop tracking scripts. Save any unfinished enquiry first.

Website data information