Just checking
Security
A summary of the measures we apply to information submitted through Compass. How that information is used, and your rights over it, are set out in our privacy notice.
Encryption
Information submitted through Compass is encrypted in transit using industry-standard transport layer security. Session content, contact details and account data are encrypted at rest, and audio recordings are held in private storage.
Access
Access is restricted to authorised Yozu personnel who require it to prepare your requirements document and to respond to you. Staff hold individual credentials, permissions are assigned by role, and administrative actions are logged. We do not disclose session content to other clients or prospects, and we do not sell it. Our processors and the circumstances in which we may be required to disclose information are described in the privacy notice.
Artificial intelligence
Under our agreements with our AI providers, material submitted through Compass is used only to generate your responses and your requirements document. It is not used to train their models, and we do not use it to train models of our own.
Anonymity and retention
A public Discovery session requires no account, and we do not request contact details unless you choose to submit your session to us. Retention periods, including the deletion of audio recordings, are set out in the privacy notice, and you may request erasure at any time.
Confidentiality agreements
Where you would prefer a mutual non-disclosure agreement to be in place before a session, please contact [email protected].
Reporting a vulnerability
If you believe you have identified a security vulnerability in Compass, please report it to [email protected] rather than disclosing it publicly. We will acknowledge your report and keep you informed of its outcome.