Trust & Security
Built for compliance teams who can't afford to guess.
Every layer of Juant.io is designed around one rule: your supply chain data never crosses into another company's workspace.
Tenant-Bound Data Isolation
Every record in Juant.io—suppliers, questionnaire submissions, evidence files, and generated reports—is cryptographically scoped to a single company workspace. The active company boundary is enforced at the server level via authenticated session tokens, ensuring cross-tenant data bleed is structurally impossible.
Administrative actions and background queue workers are strictly fenced. A user from one organization cannot query, view, or process data belonging to another.
Encrypted Evidence Storage
Supplier compliance documents (e.g., ISO certificates, utility bills) are stored securely using Cloudflare R2 object storage. All uploaded evidence is encrypted at rest.
Upload and download streams bypass intermediary servers via presigned, time-limited direct URLs. Access requires a freshly issued signed link, generated only after verifying the requesting user's active workspace membership.
Strict AI Processing Boundaries
Juant.io utilizes advanced Large Language Models (LLMs) exclusively as a reading utility to extract structured data from uploaded evidence. Each extraction request is strictly scoped to a single submission within your workspace context.
Your supply chain data is explicitly opted out of model training. Furthermore, AI outputs act strictly as draft suggestions; human-in-the-loop review and confirmation are mandated for all finalized ESG submissions.
PDPA Alignment
Our architecture and data handling practices align with Singapore's Personal Data Protection Act (PDPA). We collect data solely for stated ESG compliance purposes, enforce strict Role-Based Access Controls (RBAC), and restrict access strictly to the authenticated workspace.
Please note: This statement describes our operating posture and product design direction. It is not a claim of formal legal certification. Companies with specific vendor due-diligence requirements are welcome to contact us directly.
System Status & Availability
Monitor our platform uptime and incident history in real-time.