Security
GuardianX is built so that every claim about a device — and about GuardianX itself — can be verified, logged and audited.
The installed agent signs its own status using on-device asymmetric keys, so tampering or repackaging is detectable rather than assumed.
All data between the device, the GuardianX backend and the administrator console is encrypted in transit; stored data is encrypted at rest.
Owner, administrator and reviewer roles enforce least-privilege access to inventory, location and exported evidence.
Every sign-in, configuration change, export and policy update is recorded with actor, timestamp and outcome.
Administrators define retention windows per data category; expired data is deleted automatically per policy.
GuardianX runs on managed cloud infrastructure with standard provider-level security controls and monitoring.
Responsible disclosure
We take vulnerability reports seriously. Please report issues privately before public disclosure so we can investigate and respond.