Security & data
Where is my data stored?
In Australia, on AWS. Your data — including the AI processing — stays within the country, supporting Australian data-residency requirements. It's encrypted in transit (TLS 1.2+) and at rest (AES-256). See Data protection.
Is Bluprint SOC 2 certified?
Bluprint's security controls are aligned with the SOC 2 Trust Services Criteria — covering access control, audit logging, change management, and incident response. For the current status of formal reports or to run a security review, contact compliance@alesko.ai. More on Compliance.
Is Bluprint GDPR compliant?
Bluprint processes personal data in accordance with the GDPR and the Australian Privacy Act 1988. You have rights to access, rectification, erasure, and portability of your data, and data-minimisation is built in (for example, audit records anonymise IP addresses and transient data expires automatically).
Can other companies see my data?
No. Each company's data lives in its own dedicated database — a hard boundary, not a shared table with a filter. One organisation can never see another's projects, tasks, documents, or people. See Companies & Workspaces.
Can I get my data out, or have it deleted?
Yes — your data rights include export and erasure. Erasure is handled as a request so it can be done properly and verifiably; reach out and the team will action it.
Who in my company can see what?
Access is governed by role-based access control at the company and project level, and people only see the workspaces and projects they're part of. A read-only role can look but not change; a billing-only role never sees project work at all. The Associate respects exactly the same boundaries. See Roles & Permissions.
Next
Last updated: 2026-05-31
.png)