La seguridad es una característica,
no una ocurrencia tardía
Despliegue en VPC, cifrado BYOK, 24,000+ pruebas automatizadas, cinco marcos de cumplimiento y política de divulgación responsable. La seguridad está integrada en cada capa de JieGou.
Audit-evidence emission is the operating-cost floor: if a workflow can't be instrumented for audit evidence, we won't take it on. Non-negotiable across phases.
The framework underneath
10-Layer Governance — the same framework we use internally and with every customer
The security capabilities below aren't ad-hoc features. They sit inside a 10-layer governance framework — Identity & Access, Audit Trail, Data Governance, Human Oversight, Model Governance, Tool Governance, Compliance, Cost Controls, Observability, and Incident Response — that JieGou uses to operate AI for paying customers and to assess every customer engagement. Same framework on both sides of the table.
Cyber underwriting readiness
Your cyber underwriter is starting to ask about AI.
Industry analysts and broker commentary now identify AI governance maturity as a stated underwriting factor in mid-market cyber renewals. Aon (2026): "Underwriting reviews are now sharply focused on control maturity, vendor dependencies, AI use, and privacy practices." Lockton (Dec 2025): "Underwriters are scrutinizing board and senior management oversight of AI governance."
We've published a free operator-grade brief mapping the 10-Layer framework to the six AI question categories appearing in 2026 mid-market submissions. Anchored on Marsh / Aon / Lockton / NYDFS citations. No vendor-specific premium-discount claims — operator-honest about what documented governance does and doesn't deliver.
SOC 2 Audit Status
SOC 2 Type II report issued August 2026 by Advantage Partners: unqualified opinion, no exceptions noted, covering the Security trust services criteria over the period March 23 – June 23, 2026. Continuous compliance monitoring via Vanta remains active between audit periods. Report available under NDA.
Completed with a certified vendor.
Report issued August 2026 — unqualified opinion, no exceptions noted (Advantage Partners).
3–12 month period — starts after readiness confirmed.
One brief pairs the attestation with the discipline behind it — the SOC 2 Type II signature from outside, and our running record of publishing findings against ourselves. Written for a security diligence review. Free to cite, no email gate.
The prospective half of that record: one research cycle run under pre-registered predictions — written before any run, under a no-edit rule — where the first result refuted our own point prediction and the refutation was kept in the permanent record above the recovery. A retrospective claim cannot be diligenced; a method like this can. Free to cite, no email gate.
Everyone is about to have a gate. Almost nobody will have the receipt.
Approval-before-action has stopped being a differentiator and started being platform policy — and the gates are real now, not roadmap. One platform ships a privileged action only when an approval already exists in the session, single-use and expiring in hours. A major CRM’s seasonal release now offers per-message human approval of an agent’s outbound email, configurable three ways: review every message, review only the first, or let a rule decide. Others answered with spend ceilings and after-the-fact session transcripts. A log is written for a reader who was present. A receipt is written for someone who was not — who approved, what they could see when they did, an artifact you can show an auditor six months later. That part isn’t infrastructure. It’s a by-product of operating the work, and it’s what our hash-chain audit trail produces on every engagement. The gate itself is still becoming infrastructure — it just didn’t this month, and we treat that as a reprieve on a schedule, not a reversal.
The gate itself isn’t our answer to oversight, either. Anthropic published the number that ends per-action prompting: users approve 97% of permission prompts. Our agents are instead confined to the reversible half of the work — they gather, draft, propose, and prepare the decision in full, and they never hold the irreversible step. Reversible proceeds; judgment waits. There is nothing to rubber-stamp, because the risky act was never the agent’s to take. And the gate was never a safety mechanism — it is an accountability mechanism: a machine-reviewed action can be perfectly safe and still leave nobody accountable for it. Vendors will keep moving where review defaults sit; who answers for the send doesn’t move with them.
And you don’t have to take our word for the receipt. The schema our records are written to is published. The verifier that checks them is open source and shares zero lines of code with our product — it implements the hash logic from the published spec, not from our source, and proves itself against a golden vector. Even the census of what our audit layer does not yet cover is published, as a number that is only allowed to shrink. A gate is a feature. An attestation a stranger can verify without us in the room is not.
And the boundary between the two halves is not fixed — it moves on evidence. Every proposal an agent makes and every decision a person renders accumulates into a record, and that record is what justifies the next increment of trust: wider drafting authority, longer unattended runs, a new channel. A task tracker can hold shared state; it cannot safely expand what an agent does unwatched. That takes the accumulated record of proposed-versus-decided — produced here as a by-product of operating. Governance isn’t the brake on delegation. It’s what earns the next one.
Seguridad de infraestructura
Infraestructura de nivel empresarial desde el primer día
JieGou se despliega en su VPC con aislamiento de red completo. Todo el tráfico en tránsito está cifrado con TLS 1.3 y todos los datos en reposo con AES-256-GCM. Realizamos pruebas de penetración periódicas y compartimos los resultados con clientes empresariales.
- AWS VPC con subredes privadas
- TLS 1.3 para todo el tráfico
- Cifrado AES-256-GCM en reposo
- Pruebas de penetración periódicas
Seguridad de aplicación
24,000+ pruebas. 99.18% de cobertura. Ejecución nocturna.
Nuestro conjunto de pruebas ejecuta más de 24,000 pruebas automatizadas con un umbral de cobertura de código del 99.18%. Las pruebas de regresión adversarial nocturnas detectan problemas antes de que lleguen a producción. Cada commit y PR ejecuta escaneo de vulnerabilidades de dependencias.
- 24,000+ pruebas automatizadas
- Umbral de cobertura de código del 99.18%
- Pruebas de regresión adversarial nocturnas
- Escaneo de vulnerabilidades de dependencias
Seguridad de datos
Sus claves, sus datos, sus reglas
El cifrado Bring Your Own Key (BYOK) significa que sus claves API de LLM se cifran con AES-256-GCM usando sus propias claves de cifrado. Los controles configurables de residencia de datos mantienen los datos en regiones específicas. La detección y enmascaramiento automático de PII evita que datos sensibles lleguen a los proveedores de LLM. El cifrado a nivel de campo proporciona control granular.
- Cifrado BYOK (AES-256-GCM)
- Controles configurables de residencia de datos
- Detección y enmascaramiento automático de PII
- Opciones de cifrado a nivel de campo
Cumplimiento
Cinco marcos. Una plataforma.
JieGou proporciona preajustes de cumplimiento para los marcos que requiere su industria. Active el cumplimiento HIPAA, SOX, GDPR o PCI-DSS con un solo clic, configurando automáticamente la retención de datos, controles de acceso, registros de auditoría y ajustes de cifrado. Los clientes gubernamentales pueden usar la configuración lista para FedRAMP.
- Preajuste de cumplimiento HIPAA
- Preajuste de cumplimiento SOX
- Preajuste de cumplimiento GDPR
- Configuración lista para FedRAMP
Divulgación de vulnerabilidades
Divulgación responsable, comunicación transparente
Mantenemos una política de divulgación responsable y alentamos a los investigadores de seguridad a reportar vulnerabilidades. Confirmamos todos los reportes en un plazo de 48 horas, emitimos CVE para vulnerabilidades confirmadas y publicamos informes de revisión de seguridad trimestrales para garantizar la transparencia.
- Reportar a security@jiegou.ai
- SLA de confirmación de 48 horas
- Emisión de CVE para vulnerabilidades confirmadas
- Informes de revisión de seguridad trimestrales
Industry Alert
Why self-hosted doesn't mean secure
The open-source automation platform n8n disclosed 21+ security vulnerabilities in February 2026 — including 7 critical (CVSS 9.4–10.0) and 4 independent remote code execution vectors. Most critically, CVE-2026-25049 bypasses a December 2025 sandbox fix within 3 months — proving the issues are architectural, not patchable. National cybersecurity agencies — Singapore CSA and Canadian CCCS — have issued formal advisories. Censys identified 26,512 exposed n8n instances on the public internet.
JieGou's substrate posture vs unmaintained self-hosted
Self-hosted unmaintained risks
- 3 independent RCE vectors (expression, SQL, task runner)
- Government advisories (Singapore CSA, Canadian CCCS)
- SSO bypass, SQL injection, webhook forgery
- No SOC 2 audit, basic RBAC, no audit-trail integrity
JieGou operating substrate
- Three deployment shapes (managed cloud / VPC / air-gapped on-prem)
- SOC 2 Type II report issued (2026); continuous monitoring via Vanta
- 6 roles, 20 granular permissions, SAML/OIDC, per-agent identity
- Hash-chain audit-trail integrity; GDPR data export/deletion; SIEM export
Datos a febrero de 2026
¿Listo para automatizar con confianza?
JieGou ofrece seguridad de nivel empresarial sin la complejidad de configuración empresarial. Comience gratis o hable con nuestro equipo sobre sus necesidades de cumplimiento.