Docs/Architecture and trust/Security and the pack
Security and the pack
Bill-y is built for organizations where the security review is the purchase decision, and it is designed to make that review short. This page states the posture. The evidence, in depth, is the security pack.
The posture, in one screen
- On-premises, fully. One server on your infrastructure. No SaaS backend, no vendor endpoint, no telemetry, offline license verification. Our runtime access to your deployment is: none.
- No text leaves the machine. At the default policy, only phase labels, confidence, token counts, timestamps and pseudonymous identifiers ever cross the network. Redaction happens on the device, before storage, and can never be retroactively loosened.
- No network interception. The agent reads what the coding tool already writes locally. Nothing sits on your network path, and TLS interception attempts are detected, not performed.
- Surveillance is structurally hard. Team-level analytics is enforced as a database permission boundary, small groups are suppressed, person-level visibility is optional and mode-controlled, and every governed read is audited. There is no leaderboard at any setting.
- Enterprise transport and identity. TLS with certificate verification pinned per fleet, per-device revocable credentials, optional mutual TLS, single sign-on via your identity provider, role-based scoped access.
- Safe by default. The server refuses to start in insecure configurations. Misconfiguration fails loud and closed, not quiet and open.
What the security pack contains
The pack is the reviewer-facing bundle we hand evaluating teams:
| Document | What it answers |
|---|---|
| Security architecture | The claims above, mapped to where each is enforced. |
| Data handling and redaction reference | Exactly which fields exist at each visibility level. |
| Deployment and network guide | Requirements, topology, ports, and the install path. |
| Identity and transport note | Device credentials, certificate pinning, mutual TLS, SSO. |
| Endpoint trust artifacts | Signing-root distribution procedures and EDR allowlisting notes. |
| Governance and DPIA support | The live governance report, retention, suppression, and works-council material. |
Request it
Tell us who you are and the pack goes to your work email. We answer follow-up questions directly, engineer to engineer.