Security & Privacy

Protection is built into
how Bunud works.

Bunud handles legal information and work that may be sensitive. The platform is designed with encryption, access controls, organizational isolation, and clear operating practices to help protect that data.

We describe the controls we actually provide and avoid overstated security claims.

Security Principles

Protection starts with product design.

Security decisions in Bunud focus on limiting unnecessary access, protecting data, and keeping important activity reviewable.

01

Sensitive data is treated with care

Documents, conversations, and work data are treated as sensitive, and access and storage controls are designed with that context in mind.

02

Access should match responsibility

Roles and permissions help organizations control what each member can access instead of granting broader access than necessary.

03

Important actions remain reviewable

Audit logs provide visibility into significant activity when review or accountability is required.

Built-in Protections

Practical controls for accounts and data.

Bunud applies protection across several layers, from account access to organizational data boundaries.

Encryption in transit and at rest

Data is protected while moving between systems, and encryption is used to protect stored data.

Account and session protection

Authentication and session controls help protect access to Bunud accounts.

Roles and permissions

Control what members can view or do inside an organization based on their assigned roles and permissions.

Organizational data isolation

Each organization operates within its own data boundary so its information remains separated from other organizations.

Audit logs

Important actions can be recorded to help organizations understand who performed an action and when.

Operating Practices

Security is an ongoing process.

Security does not depend on a single feature. It is supported by ongoing practices across development, infrastructure, and operations.

01

Security throughout development

Authentication, permissions, and data protection are considered when features are designed and built, not added only after release.

02

Controlled changes

Changes to the application and infrastructure are handled in ways intended to reduce unnecessary risk and unintended impact.

03

System monitoring

Systems and services are monitored to help identify failures or unexpected behavior that may require attention.

04

Ongoing review

Security controls and operating practices are revisited as Bunud evolves and its usage grows.

Shared Responsibility

Protecting data is a shared responsibility.

Bunud provides security controls within the platform, while users and organizations remain responsible for account management, access decisions, and how sensitive information is handled.

Your responsibility

  • Assign appropriate roles and review access when responsibilities change
  • Protect account credentials and the devices used to access Bunud
  • Remove access when a member no longer needs it
  • Review sensitive information before uploading or sharing it

Bunud’s responsibility

  • Protect data in transit and at rest
  • Provide tools for managing access and permissions
  • Maintain organizational data isolation within the platform
  • Operate and monitor the service using appropriate security practices

FAQ

Common questions about security and privacy

How does Bunud protect data?

Bunud uses a combination of controls including encryption, access and permission management, organizational data isolation, and system monitoring.

Who can access my organization’s data?

Access within an organization is determined by membership, roles, and the permissions assigned to each member.

Does Bunud provide audit logs?

Yes. Bunud supports audit logs for important activity where that capability is included in the relevant plan or environment.

Does Bunud hold specific security or compliance certifications?

We do not claim certifications or accreditations on this page unless they have been formally obtained and are currently maintained.

What remains the responsibility of users and organizations?

Users and organizations remain responsible for managing members and permissions, protecting credentials and devices, and deciding how sensitive information should be shared or stored.

Learn More

Explore Bunud with security in mind.

Review the available plans or start free to see how Bunud handles access, permissions, and organizational data.