Security

Enterprise-grade security, by default

Your revenue data is your most sensitive asset. Fairway is built with security as a foundation, not an afterthought.

Your Data Stays Yours

Your data is encrypted with a unique key per account. Pipeline data, call transcripts, and AI outputs are stored as ciphertext — our team cannot read your data from the database. CRM credentials are encrypted separately using AES-256-GCM.

Encryption Key Separation

Your encryption key is derived exclusively for your account and stored separately from the database. Even with full database access, your data remains unreadable without the master key — which never touches the database.

Complete Account Isolation

Your pipeline, transcripts, and outputs are completely walled off from every other account. There is no shared data layer. No one else can see your numbers.

Secure Sign-In

Sign in with email/password or Google. Sessions are short-lived and automatically refreshed, so even if a device is lost, exposure is limited.

AI That Forgets

Your data is never used to train AI models. When Fairway generates an analysis, the AI provider processes your inputs in real time and immediately discards them. Your stored data remains encrypted at rest — decrypted only when needed to generate your outputs.

SOC 2 Certified Infrastructure

Fairway runs on SOC 2 Type II certified infrastructure hosted entirely in the United States. We are also pursuing our own SOC 2 Type II certification.

You Control Access

CRM integrations connect via OAuth — the same secure method used by Salesforce and Google. We request only the minimum permissions needed. Disconnect anytime and all stored tokens are deleted instantly.

Questions?

Need more detail? Just ask.

If your security or IT team needs additional information, we are happy to complete your vendor questionnaire or jump on a call. Reach us at support@tryfairway.ai.

Start Free Trial