Your accounts. Your data. Revocable on a phone call.
We touch real workflows: inboxes, CRMs, SOPs, spreadsheets, the documents you do not want on the internet. The way we work reflects that. Plain English below. No compliance theater.
access credential
| ACCOUNT OWNER | CLIENT |
| ISSUED TO | PROMONTORY · ASSIGNED ENGINEER |
| SCOPE | WRITE: 3 paths · READ: 11 paths |
| ENVIRONMENT | CLIENT TENANT · CLIENT REGION |
| MFA | REQUIRED · CLIENT-ENFORCED |
| EXPIRY | TIME LIMITED · REVIEWED BY CLIENT |
| REVOCABLE BY | CLIENT, ANY TIME, ONE CLICK |
| AUDIT TRAIL | CLIENT-OWNED LOG · WORM |
How we operate inside a client’s stack. Four rules. No exceptions.
Least privilege, by default
Engineers get the narrowest access that lets the job ship. Write scopes are named, read scopes are limited to the data the workflow needs. No shared logins. No global admin keys handed across desks.
Your accounts. Your data. Your tenant.
Systems run on your Anthropic, OpenAI, Gemini, or self-hosted accounts. Data sits in your storage, your region, your retention policy. We do not warehouse client data on Promontory infrastructure.
Revocable on a phone call
Access is time-bounded and tied to named individuals. You can cut every credential we hold in one administrative action. No platform lock-in, no escrow, no “but our integration depends on it.”
Human review at the steps that matter
Anything that sends an email, moves money, mutates a record, or speaks to a customer runs through an approval surface until you switch it off. Conservative defaults. You decide when each switch flips.
The controls we actually enforce. In plain English.
We will not list certifications we do not hold. What we will do is tell you, control by control, how we work inside your environment and which lever is in your hand.
Every credential we hold has a birthday and an expiry date.
Available in writing.
“We do not hold SOC 2 yet. We do not have a 40-page security whitepaper. What we have is a set of operational habits, written down, that we will not break to win your business.”The position, in writingPROMONTORY · OPERATING PRINCIPLE
Send us your security questionnaire. We will answer it, line by line, in plain English.
- – Written answers to each question
- – Sample data-handling addendum (PDF)
- – Reference clients on request
- – A working access credential to inspect
- – A no for whatever we cannot honestly do
Promontory