How safe is my data?

August 2nd 2022

When you use Encodian Flowr, you’re trusting us with your data, and we take that responsibility seriously.
Your files stay protected from start to finish. We don’t permanently store your data, we never share it, and everything happens securely within Microsoft Azure’s trusted infrastructure.

Here’s exactly what happens when you use Encodian.

What happens when you run a Flowr action

When you trigger a Flowr action, your file is encrypted and sent securely to the nearest Microsoft Azure datacentre managed by Encodian.
It’s processed, the results are returned to Microsoft Power Automate, and all temporary data is deleted immediately afterward.

Your files never leave the Azure ecosystem, and Encodian staff have no access to your content at any point.

We retain only minimal metadata, such as the type of action performed, to help us track usage and performance. This never includes your document content or any personal data.

Where your data is processed

By default, data is handled in the nearest available Microsoft Azure region to ensure speed and compliance.
Encodian currently operates in Azure regions in the UK, Germany, Switzerland, USA, Canada, and Australia.

If your organisation has regional or regulatory requirements, you can choose a preferred processing region.
Dedicated subscriptions also allow you to keep everything within your own tenant.

Built on Microsoft Azure

Encodian runs entirely within Microsoft Azure’s Platform-as-a-Service (PaaS) architecture.
Your data benefits from the same physical and network security controls that protect Microsoft’s global cloud services, including redundancy, resilience, and real-time monitoring.

In short: your data never leaves a Microsoft datacentre, and we rely on its world-class security posture to keep it safe.

Encryption and certification

All data in transit and at rest is protected with 256-bit AES encryption, secured using SHA-256 and RSA Encryption Certificates, and transmitted over HTTPS (TLS 1.2 or higher).

Encodian’s Information Security Management System is ISO 27001 certified, confirming that our security practices, policies, and controls meet internationally recognised standards.

Who can see your data

No one at Encodian can access the content of your documents.
If you ever contact us for support, we may request a sample file or configuration so we can reproduce an issue, but only if you choose to share it.

Outside of those rare cases, your files remain encrypted, isolated, and inaccessible.

Complete control with Dedicated Subscriptions

For organisations that need full control, a Dedicated subscription lets you deploy Encodian’s services directly into your own Azure environment or data centre.
That means your data never leaves your infrastructure, while still benefiting from Encodian’s automation technology and Microsoft’s cloud resilience.

AI data and security

If you’re using Encodian’s AI-powered actions, please refer to our dedicated AI Data Security and Privacy article for additional details on how AI-related data is handled and protected.

Transparency and further information

For security reasons, we don’t publish detailed architecture diagrams, IP addresses, or port configurations publicly, but our team can provide these for audit or compliance reviews upon request.

This post provides a high-level overview of how we protect your data.
For more detailed technical information, please visit our Data Security and Data Privacy article in the Encodian Support Centre.

Your trust matters to us

We’ve built Encodian on a foundation of security, transparency, and control, so you can automate confidently, knowing your data stays safe every step of the way.

Author
Ev Luna-Rose

Content Marketing Manager

You might also be interested in...