SECURITY & TRUST

Confidence starts
with clarity.

Document work deserves clear answers about data, identity, and what a product is ready to do. Here is where Oxora stands today.

Your documents stay out of this site

This marketing site has no document upload endpoint. Exploring the product concept does not read your files or send documents to an AI or OCR provider.

Early-access product data handling will depend on the deployment and the providers you choose. We’ll discuss those boundaries before a pilot begins.

A deliberate path to SSO

Workspace sign-in can hand off directly to a configured identity service. The marketing site never asks for a password and does not store identity tokens.

Organization identity, OIDC or SAML, multi-factor authentication, and session controls belong to the connected identity service and require deployment configuration.

A quieter public footprint

The site serves prebuilt pages and self-hosted fonts. We do not include advertising trackers or third-party analytics by default. The contact form opens an email draft in your own email application.

Read the privacy notice

Honest about what’s next

Oxora is in early development. We do not claim SOC 2 certification, ISO 27001 certification, HIPAA compliance, enterprise availability guarantees, or production access controls.

If your workflow has a specific security or compliance requirement, let’s discuss it before you share sensitive documents.

Have a security question or found an issue? Contact the team with a description and steps to reproduce. Please leave credentials, private documents, and other sensitive data out of the first message.

Contact the team