Trust

Security, governance and responsible AI

These commitments apply to every engagement, regardless of size. They are contractual, not aspirational.

Data handling

De-identified fixtures, least-privilege access and no client data in training sets — ever.

Responsible AI

We evaluate against recognised frameworks such as NIST AI RMF and the EU AI Act, and generate evidence for review. We do not certify.

Accessibility and privacy

Deliverables are documented to WCAG 2.2 where applicable, and data processing terms are part of every agreement.

What we commit to in writing

No client data in training sets — ever
Least-privilege access, revoked at engagement end
Isolated test environments per engagement
Signed data-processing agreements
Findings disclosed to you first, and only to you
Security questionnaires answered within five business days
Standard MSA and DPA templates ready for procurement review

Bulsoft assures the data, models and software behind production-ready AI.