Security and compliance at Revenium

Revenium meters usage metadata, not payloads. Compliance artifacts, encryption, data handling, subprocessors and platform controls are documented below.

Last reviewed 6 August 2026
Compliance

What we hold, and how to get it

Current as of 6 August 2026.

ArtifactStatusAccess
SOC 2 Type II reportHeldUnder NDA
Penetration test summaryHeldUnder NDA
Architecture and data-flow diagramHeldUnder NDA
Business continuity planHeldUnder NDA
Data Processing AgreementHeldUnder NDA
Subprocessor listHeldUnder NDA
Terms of Service, SLA, Privacy PolicyHeldPublic
Your Data

What Revenium sees. And what it never sees by default.

Most AI observability tools sit in the request path and read everything that passes through. Revenium is built the other way around. The platform captures usage metadata only.

  • Token counts, input and output
  • Model, provider and latency
  • Computed cost and duration
  • Attribution fields: organization, subscriber, product, agent, task, workflow
  • Optional quality and classification metrics
  • Prompt content, never accessed by default
  • Response content, never stored by default
  • User-generated content, never analyzed by default

Payload capture is a per-organization opt-in, gated three ways: team admin enablement, per-user view access, and dedicated data contexts. When enabled, payload data is encrypted at rest.

Data Handling

Encryption, residency, retention and disclosure

ENCRYPTION

AES-256 and TLS 1.2+

All customer data is encrypted at rest using AES-256. Data in transit is encrypted with TLS 1.2 or higher, including across public networks. Credentials are stored hashed and are not retrievable by Revenium personnel.

RESIDENCY

US by default, EU available

Customer data is processed and stored in US-based cloud infrastructure by default. An EU region is available on Enterprise plans.

RETENTION

Configurable, deleted on exit

Retention is configurable on Enterprise plans. On written request or on termination we provide a copy of your data and securely destroy our own copies, other than data we are legally required to retain and copies in backups until overwritten in the normal cycle.

ACCOUNT DATA

What a login holds

A Revenium account holds a business email address used as the username, an optional display name, role and permission assignment, authentication metadata, and IP addresses in access and audit logs. Authentication is delegated to Clerk, Inc. Revenium personnel cannot view credentials.

DISCLOSURE

72-hour breach notice

We notify affected customers by email without undue delay and within 72 hours of becoming aware of a breach, as committed in our published Data Processing Agreement.

PERSONNEL

Screened before access

Before any employee or contractor receives access to customer data, we run a background check covering criminal history over the prior five years and verification of employment and education history over the prior five years.

AI & Models

Where AI is used, and where it isn't

Buyers running AI risk assessments ask the same six questions. Here they are, answered.

The platform does not depend on a model

Metering, cost calculation, attribution and billing are deterministic. Their accuracy does not vary with model performance, so there is no model accuracy figure to report for the core use case.

Models are used on the insight layer only

Large language models are used for summarization and insight generation on top of already-computed data. Model providers are Anthropic and OpenAI, both listed on our public subprocessor page.

Model providers don’t train on your data

Our model providers are contractually prohibited from using data processed through Revenium’s insight layer to train, fine-tune or improve their models.

Every insight is traceable

AI-generated insights trace back to the underlying metered transaction records. You can drill from a recommendation into the raw usage and cost data that produced it, so conclusions can be verified against source data rather than taken on trust.

Assessed, and reassessed

Revenium's AI use has been reviewed under enterprise AI model impact assessment processes, including automated approval through OneTrust. Use of the AI layer is reassessed every six months.

Guardrails are opt-in and explicit

Policy enforcement runs only where you configure a rule. Nothing is blocked, rewritten or intercepted unless you have asked for it.

Subprocessors

Published, not on request

Fourteen subprocessors span cloud infrastructure, authentication, payments, monitoring and engineering support. The published list names each one with its purpose and processing region.

We give 30 days notice before adding or replacing a subprocessor. Customers may object on reasonable data protection grounds within 15 days of notice.

List Available Under NDA

Platform

Enterprise controls

Controls available to administrators in the product.

  • Single sign-on: SAML 2.0 and OpenID Connect / OAuth 2.0
  • Role-based access control
  • Multi-factor authentication
  • Audit logging of user access and administrative actions
  • Configurable data retention
  • Customer-managed provisioning and deprovisioning
Availability

Uptime and resilience

Service level

Our published SLA commits to 99.99% monthly availability, with service credits below 99.95%.

Read the SLA →

Live status

Current and historical uptime is published continuously, not summarized once a quarter.

status.revenium.ai →

Audited controls

Availability controls were assessed under the SOC 2 availability criterion as part of our Type II audit.

Business continuity

Summary available under NDA.

Disaster recovery

Summary available under NDA.

Incident response

Summary available under NDA. Incident response was in scope for our SOC 2 Type II audit.

Secure Development

How the SDK behaves, and how it's built

Asynchronous by design

SDK metering runs on a background thread after your model call returns. It never blocks the provider call and adds no measurable latency.

The only synchronous path is an optional pre-call guardrail check, which runs only when you configure an enforcement rule.

Dependencies tracked

Third-party open-source components in the platform and in published SDKs are tracked and scanned. A software bill of materials for published SDK packages is available on request.

Attestation

A CISA Secure Software Development self-attestation covering published SDK packages is available on request.

The Security Package

Everything procurement asks for, in one download

SOC 2 Type II report · penetration test summary · architecture and data-flow diagram · subprocessor list · Data Processing Agreement

Access is granted after a clickthrough NDA and domain verification. No countersignature, no waiting on us.

FAQ

Frequently asked questions

Is Revenium SOC 2 compliant?

Yes. Revenium holds a SOC 2 Type II report, issued after an independent audit against the AICPA Trust Services Criteria for security, availability and confidentiality. The report is available under NDA.

Do you hold ISO 27001?

Not today. SOC 2 Type II is our current attestation. We publish what we hold and what we do not.

Does Revenium store my prompts or AI responses?

Not by default. Revenium meters usage metadata only: tokens, cost, model, provider, latency, duration and attribution fields. Payload capture is a per-organization opt-in. When enabled, payload data is encrypted at rest and gated at the team, user and data-context level.

Is my data encrypted?

Yes. All customer data is encrypted at rest using AES-256, and in transit using TLS 1.2 or higher.

Where is my data stored?

In US-based cloud infrastructure by default. An EU region is available on Enterprise plans.

Will Revenium process personal data about my employees?

That is your choice. Attribution fields are populated by you, and we do not require individual identifiers. If you use pseudonymous values such as team or cost center, no personal data enters the platform through attribution. Platform accounts themselves hold a business email address, role and authentication metadata for each user you invite.

Who are your subprocessors?

Fourteen, published with purpose and processing region. We give 30 days notice before any change and you may object within 15 days.

Does Revenium sign DPAs?

Yes. Our DPA is public, incorporates the EU Standard Contractual Clauses and the UK International Data Transfer Addendum, and includes CCPA service-provider terms.

How quickly will you tell us about a breach?

Within 72 hours of becoming aware, by email, as committed in our DPA.

What happens to our data when we leave?

On request or on termination we provide a copy and securely destroy our copies, other than data we are legally required to retain and copies in backups until they are overwritten in the normal cycle.

Does adding Revenium's SDK put my AI traffic at risk?

No. SDK metering runs on a background thread after your model call returns. It adds no measurable latency and never blocks the provider call. The only synchronous step is an optional pre-call guardrail check, which runs only when you configure an enforcement rule.

Do you support SSO?

Yes. SAML 2.0 and OpenID Connect / OAuth 2.0, alongside role-based access control and audit logging.

How do I get the SOC 2 report?

Request the security package on this page. Access is granted after a clickthrough NDA and domain verification.

Filling out a vendor assessment?

SOC 2 report, penetration test summary, architecture diagram, DPA and subprocessor list, in one download.

Get the security package →

Evaluating the SDK?

See what the SDK sends, field by field, in the documentation.

Read the integration docs →

Question we didn't answer here?

Get our security team on a call with yours.

security@revenium.ai →

Meter your AI economics.
Keep your data yours.

Revenium gives engineering and finance teams control over AI spend without taking custody of your content.

SOC 2 TYPE II · FINOPS FOUNDATION