Trust
Plain statements on how Kinetic Anvil handles access, data, and security. We state what is true today, nothing ahead of it.
Scoped access
Every API key carries an explicit set of permissions, and each organization's data is isolated. A request outside a key's permissions is refused.
Audit trail
State-changing operations and job transitions write events to the account record. Events can be reviewed through the API.
No client funds
Kinetic Anvil never takes custody of funds. Custody and disbursement run through counsel and vetted third parties.
Encryption & confidentiality
Data is encrypted in transit and at rest. Matter data is reached only by people and systems that need it to do the work. See our Privacy Notice.
Current architecture and data-handling information is provided to qualified counterparties during diligence. No certification is claimed on this page. For a specific requirement, write to security@kineticpartners.org.
Found a security issue? Report it privately and we will respond. Please give us a reasonable window to remediate before any public disclosure. You can also email security@kineticpartners.org or read our security.txt.
Report received
Thank you. Our security team will review and follow up at the address you provided.