Security

Security built into the control plane

Govern what agents can touch, keep zero source code retention, and audit every action. Security your team can verify

Compliance

SOC 2 certified, audited controls

Ellipsis is SOC 2 Type 1 certified, with Type 2 in progress. Controls cover security, availability, and confidentiality. Request our report at team@ellipsis.dev.

Transparency

Every action, logged and visible

Zero source code retention, and every agent action is logged and auditable. Security your team can verify, not just take on trust.

Least privilege

Agents only reach what you allow

Admins choose which tools and MCP servers each agent can call, down to individual GitHub actions. Anything not on the allow-list, the agent simply cannot reach, so every agent runs with least privilege by default.

Explore the platform