A fixed-price gap analysis, remediation through to your audit, and upkeep after it. All in a workspace you keep.
All compliance →Led by a published security researcher with five CVEs. One standard report, letters for your buyers, and retests of your fixes.
All security →To the people you sell to, raise from or answer to.
All industries →Original research, free tools, and plain-language guides on security and compliance, from a published security researcher.
Read the blog →We use AI to draft and analyze faster, so your engagement spends more time on judgment and less on typing. Here is exactly how it works.
What we use. Claude, from Anthropic, through Anthropic's commercial API. It powers drafting and analysis features in the TrazTech Workspace and helps our team draft documents such as policies.
What it can see. When an AI feature is used, it can read the content in your Workspace for your engagement: documents you upload, evidence, findings and the materials we produce. Each AI session is limited to your Workspace and can't see other clients' data.
What we keep out. Credentials never go into the Workspace or into AI tools; they're shared only through 1Password. We don't send personal health information to AI tools.
Your data is not used for training. Anthropic's commercial terms prohibit training its models on our clients' data. Anthropic deletes inputs and outputs within 30 days.
People review everything. AI output is a draft. Our team reviews and edits it, and every deliverable is signed off by a TrazTech Principal before you receive it.
Where it's processed. The Workspace is hosted in Canada. Not all of our subprocessors are in Canada: AI processing happens in the United States under Anthropic's commercial terms and data processing addendum. Our full list is at traztech.ca/subprocessors.
You can turn it off. Ask us and we'll disable AI features for your Workspace. We'll tell you if that changes your timeline.
Questions, or need this for a vendor review: [email protected]
The fuller version, including where we deliberately do not use AI, is in our AI Policy.