Security & Privacy
Your legal documents deserve enterprise-grade protection. Here's how we deliver it.
AES-256 Encryption
All data is encrypted at rest and in transit using industry-standard AES-256 encryption. Your documents, database backups, and file storage are all protected. All connections use secure HTTPS.
Per-Tenant Data Isolation
Every organization gets its own completely separate database and dedicated file storage. Your data is physically separated from every other organization. This is not a shared database with access filters; it's true isolation.
No AI Training on Your Data
Your documents are never used to train AI models. We use AI for processing your requests only. Your data is not retained by AI providers and is not used to improve their models.
SOC 2 Aligned
Our security practices follow SOC 2 principles for security, availability, integrity, confidentiality, and privacy. The architecture is designed to support compliance requirements.
AI Access Mirrors User Access
The AI inherits exactly the access of the user making the request, never more. No grant means the AI cannot reference the file. View-only grant means the AI can read but not edit. Two users get different answers from the same chat based on their own access.
Compliance Pre-Check on Every AI Action
Before any AI-driven document change is applied, Juravie runs a jurisdictional pre-check. Risky edits are surfaced with the specific statute, a risk level (illegal vs unenforceable), and a compliant alternative. The user decides whether to proceed, apply only the safe parts, or cancel.
Audit & Forensics
Every session lifecycle event, every redline accept/reject, every grant change is recorded permanently. The Sessions Dashboard exposes the full timeline; CSV export feeds your SIEM. Drill into any document or any user in seconds.
Additional Security Measures
Authentication
Sign-in through enterprise identity providers. Every request requires a valid authenticated session. Unauthenticated requests are rejected immediately.
Custom Roles & Per-File Restrictions
Build custom roles to mirror your firm's structure (paralegals, associates, partners, contract attorneys). Add per-user permission overrides for one-off exceptions, and per-file restrictions for sensitive matters with four independent access modes (View, Download, Edit, Delete). System role templates ship by default; you can clone, rename, and tune any role to match your needs.
Immutable Audit Trail
Every action is recorded in a tamper-proof audit system stored in your organization's own dedicated log storage. Over 50 action types tracked across documents, sessions, approvals, templates, compliance, and authentication.
Network Protection
Enterprise-grade firewall and threat detection systems block common web attacks and abuse attempts before they reach the application.
Data Export & Portability
Download a complete copy of all your data at any time. Your data belongs to you. Take it with you if you ever decide to leave.
Questions About Security?
We're happy to discuss our security practices in detail.