Security

Security

Last updated: 14 July 2026

Security is built into the Version X platform from the ground up. This page describes the controls and practices in place. It reflects only what we have implemented — we do not make claims we cannot substantiate.

Data encryption

All data is encrypted in transit using TLS 1.2 or higher. Data at rest is encrypted using AES-256. This applies to both the website and the platform.

Hosting and data residency

Version X infrastructure is hosted within the UK and European Union. We do not store customer data outside these regions without explicit agreement.

Access controls

The platform enforces per-module permissions, allowing organisations to control precisely which teams and roles can access each area. Access is granted on a least-privilege basis. Administrator accounts can review and revoke access at any time.

Audit trail

Every action taken by an AI agent within the platform is recorded in a full, immutable audit trail. Administrators can review what was done, by which agent, and when — providing complete operational visibility and accountability.

Infrastructure

Version X is built on infrastructure provided by Vercel and Supabase, both of which maintain SOC 2 Type II attestations. Version X Ltd itself does not currently hold SOC 2, ISO 27001, or Cyber Essentials certification. We are working towards formal certification and will update this page when that changes.

Vulnerability disclosure

If you believe you have discovered a security vulnerability in Version X, please report it responsibly to hello@versionx.co with the subject line “Security disclosure”. We will acknowledge your report within two business days and aim to resolve confirmed vulnerabilities promptly. We ask that you do not disclose publicly until we have had a reasonable opportunity to investigate and remediate.