At BrainGrid, we understand that our platform is integral to your software development lifecycle. We’ve built comprehensive security measures to protect your code, requirements, and intellectual property while providing powerful AI-driven development capabilities. BrainGrid was founded by ex-Twilio engineers experienced in building, operating, and securing large-scale cloud platforms.

Account Security

Infrastructure Security

Data Privacy & Intellectual Property

Integration Security

User Best Practices

Shared Responsibility Model

Security at BrainGrid follows a shared responsibility model. While we secure the infrastructure and platform, you maintain control over your data and how you use our services.

Where Does My Data Live?

Understanding where your data resides is crucial for compliance and security. BrainGrid uses a modern, distributed infrastructure designed for performance, reliability, and security.

Data Residency by Region

While BrainGrid’s infrastructure is globally distributed for performance, we understand the importance of data residency for compliance:
  • United States: Primary data centers located in US regions
  • European Union: Data processing compliant with GDPR requirements
  • Data Transfers: All international data transfers use appropriate safeguards including Standard Contractual Clauses

Third-Party Sub-processors

BrainGrid uses carefully selected sub-processors to deliver our services:
ServicePurposeData Processed
AnthropicAI model providerRequirements, prompts, conversations (not stored by provider)
OpenAIAI model providerRequirements, prompts, conversations (not stored by provider)
WorkOSAuthentication & SSOUser authentication data, organization info
ResendEmail deliveryTransactional email content
MaxMindGeolocationIP addresses for extension tracking
All sub-processors are bound by data protection agreements and are prohibited from using your data for their own purposes.

GDPR Compliance

The EU General Data Protection Regulation (GDPR) governs the use of personal data in the European Union and United Kingdom. At BrainGrid, we are committed to GDPR compliance and protecting the privacy rights of all our users. Our GDPR commitments include:
  • Implementing appropriate technical and organizational security measures to protect personal data
  • Promptly notifying customers of any data breaches that may affect their personal data
  • Imposing similar data protection obligations on all our sub-processors and service providers
  • Responding to data subject rights requests including access, correction, deletion, and portability
  • Using EU Standard Contractual Clauses and UK Addendum for international data transfers
For more information about how we handle your data, please refer to our Privacy Policy and Data Processing Addendum.

Continuous Improvement

Security at BrainGrid is an ongoing commitment. We continuously:
  • Update our security practices based on emerging threats
  • Enhance our AI models to better understand security implications
  • Expand our compliance certifications
  • Improve transparency through regular security updates
Your trust is paramount to us, and we’re committed to maintaining the highest security standards as we help accelerate your development workflow.

Security Contact

If you discover a security vulnerability or have security concerns:

Email: security [at] our domain name. Response Time: Within 24 hours for critical issuesWe take all security reports seriously and will work with you to understand and address any concerns.