Security

Autonomous, but never unattended

Eminex works inside accounts that matter to your business. Here's exactly how access is protected, scoped and reversible.

How we protect your access

The controls that let you leave it running without wondering what it might do.

Encrypted end to end

Traffic is TLS 1.3 in transit and AES-256 at rest. Platform credentials are encrypted with per-tenant keys and never appear in our interface or logs.

Least-privilege access

We request the narrowest scope each integration allows. If a platform offers read-only, that's what we ask for until you enable publishing.

Approval-gated actions

By default nothing publishes without your approval. Autonomy is a setting you raise deliberately, per channel, and can lower at any time.

Reversible by design

Every published action can be rolled back, and every integration revoked in one click. Revocation is immediate, not queued.

Hard spend caps

Eminex never moves budget past a ceiling you set. Proposed changes wait for approval; there is no path for it to spend on its own.

Full audit trail

Every action is timestamped with who approved it and the data behind it, exportable whenever you need it.

Infrastructure

  • Hosted on SOC 2 compliant cloud infrastructure
  • Isolated per-tenant data boundaries
  • Encrypted, regularly tested backups
  • Continuous dependency and vulnerability scanning

What we never do

  • Sell or share your data with advertisers
  • Train public models on your private content
  • Publish or spend without your approval
  • Store payment card numbers on our servers

Found something? Tell us.

We investigate every report and respond within two business days.

Report a vulnerability

Connect with confidence

Encrypted, approval-gated, and revocable in one click. Set it up in under two minutes.