Your clients trust you.
You can trust Dax.
Security isn’t a feature we added later — it’s how Dax was built from the very first line of code.
All traffic is encrypted over TLS in transit, and every record is encrypted at rest at the infrastructure level. On top of that, the most sensitive fields — Social Security last-four, driver’s-license numbers, vendor credentials, and access tokens — carry an additional layer of application-level AES-256 encryption, so they stay unreadable even to someone with direct database access.
Every record is scoped to your agency and enforced at the database level with row-level security, so one agency can never see another’s data.
Sensitive actions are recorded with who, what, and when — including every view and download of a signed document — giving you a reviewable trail across your account.
Signed documents are sealed with cryptographic hashes, per-signature verification IDs, consent records, and an append-only event log — evidence built for scrutiny.
Inbound webhooks from phone and texting providers are cryptographically signature-checked and rate-limited; AI document processing is sandboxed with no path from a document’s content to your database. No third-party code runs in your browser session — every dependency is bundled and served from our own origin under an enforced Content-Security-Policy.
Your data is yours — it’s written into our Terms. Export it whenever you want; no lock-in, no ransom for your own book of business.
Stated honestly.
We only claim what’s true. Roadmap items are shown transparently so you always know exactly where our program stands.
Questions about security?
We’re glad to walk your team or your clients through how Dax protects data.