Security and compliance.
Dalton operates with built-in guardrails, human oversight for critical actions, full audit trails, and never trains on your data.

SOC 2 Type II.
Security controls reviewed each year by an independent auditor. Report available under NDA.
Security is the product.
Connecting an AI to production is a serious decision. Every design choice starts from that.
Encryption
AES-256 at rest, TLS 1.3 in transit.
Audit logs
Full trace of who did what, when - diffable and exportable.
Read-only default
Write access only happens with scoped, revocable approval.
RBAC
Role-based access control, SSO + SCIM for enterprise tenants.
Zero retention
Your code, logs, and incidents stay yours - never train our models.
Human-in-the-loop
Autonomous only on routes you approve. Proposal everywhere else.
Hardened by default.
Our infrastructure is built the same way we recommend yours should be: isolated blast radius, continuous verification, and no action without a reversible path.
- Production infrastructure built for availability and blast-radius control.
- Automated backups, point-in-time restore, disaster-recovery runbooks.
- 24/7 security monitoring, paging on drift and privilege escalation.
- Regular penetration testing and third-party vulnerability reviews.
- Tenant isolation - no cross-customer data access, ever.
Review the details with our team.
Full SOC 2 report, subprocessor list, architecture diagram - under NDA.