Invistant
Security
Last updated August 29, 2026
Last updated: August 27, 2026
Invistant is built for company knowledge that should stay in your workspace. This page explains—in plain language—how we isolate workspaces, protect access, and handle the files and data your team connects.
Your workspace
- Workspace isolation: Your team's data is scoped to your workspace. Other customers cannot access it.
- Passwords: Stored as one-way hashes. We cannot read your password.
- HTTPS: The marketing site and application use encrypted transport.
Your files
- Hoover (legacy): An optional desktop connector for existing workspaces that already use it. Original files stay on connected computers. Hoover is not part of new customer onboarding.
- Job photos & documentation: Stored as content-addressed blobs (hashed identifiers). Field records are verifiable evidence in your workspace.
Your answers
Ask searches indexed company knowledge in your workspace and returns supporting sources. Verify answers against those sources before relying on them. See Privacy for how AI processing works.
Logging and backups
- Access logging: Selected important actions may be logged for support and security.
- Backups: Application databases are backed up on a regular schedule. Contact us if you need details for your workspace.
Services we use
Stripe (payments), Mailgun (email), OpenAI (AI features when enabled), and cloud hosting/storage. See the Privacy Policy for the full list.
What we ask of you
- Protect account credentials and Hoover pair codes
- Only connect folders you are authorized to index
- Verify Ask answers before relying on them
- Report suspected unauthorized access promptly
Contact
Security questions or concerns: Talk to us.