Skip to content
Trust, Privacy & Data Governance

Built with strict
privacy boundaries.

An AI personal secretary must handle your most sensitive daily routines. We built Ruddi on the principle that your documents, voice, and calendar remain completely private and under your control.

Zero Public AI Model Training

Your private data remains strictly yours.

We do not train public AI models on your notes, emails, schedules, or company files. All model interactions are processed through isolated API endpoints under zero-retention agreements where your inputs are discarded immediately after generating the response.

  • Strict data isolation between users and tenants
  • No customer data used for foundational model fine-tuning
  • Enterprise agreements enforce zero-data-retention on inference

Explicit Audio Activation

Zero passive background listening.

Ruddi does not listen passively to your room or office. Audio capture hardware triggers strictly and exclusively when you hold your shortcut key (⌥ Space) or click the voice button in the interface. When you release the shortcut, audio stream buffers are immediately flushed.

  • Microphone hardware state is tied directly to physical hotkey press
  • No continuous audio recording or passive wake-word scanning
  • Audio is processed in ephemeral memory and discarded after transcription

Permission-Aware Ingestion & RBAC

Strict clearance boundaries for company files.

When teams ingest internal documents, policies, or technical specifications, Ruddi strictly honors existing organizational permission structures. An employee querying the company handbook will never receive citations or data from executive compensation files unless explicitly authorized.

  • Role-Based Access Control (RBAC) enforced on every vector search query
  • Full citation transparency: verify every claim against the exact source document
  • Granular document permissions by team, department, or individual

Encryption & Enterprise Architecture

End-to-end security standards across platforms.

All data transmitted between your desktop client, mobile app, and backend services is encrypted using TLS 1.3. Stored database records and files are encrypted at rest using AES-256. User identity and authentication tokens are managed via secure identity infrastructure.

  • TLS 1.3 in-transit and AES-256 at-rest encryption standards
  • Hardened cloud infrastructure with isolated data partitions
  • Encrypted session authentication with multi-factor authentication (MFA) support

Data governance & customer ownership

How we guarantee complete control over your workspace records.

Data Portability & Full Export

You own all your content. Export your full task ledger, document pages, and schedule notes in standard JSON or Markdown formats at any time.

Complete Account Deletion

When you delete your account, all associated workspace data, encrypted document vectors, and settings are permanently wiped from our database clusters.

Strict Tenant Isolation

Enterprise customers operate within dedicated tenant boundaries. Data from one organization can never cross-pollinate with another.

Audit Logging & Transparency

Every query, document access, and meeting scheduling action is logged in an immutable audit ledger available to workspace administrators.

Have security or enterprise compliance questions?

Reach out to our security team for custom tenant isolation, SOC reports, or enterprise security reviews.