Security at Venn.ai, how we keep your data safe
How Authentication Works
Venn.ai connects to your business apps using OAuth 2.0, the same industry-standard authentication protocol used by every major SaaS tool. You authorize each integration through the app's own login flow — Venn.ai never sees or stores your usernames or passwords.
Each integration is scoped independently. Connecting Venn.ai to Salesforce does not grant it access to your Gmail, and vice versa. Every app connection is explicit and revocable at any time.
Importantly, your OAuth system is what grants permissions, not Venn. Venn inherits the exact permissions your organization has already established and cannot override, expand, or bypass those defined by your IT and security admins. If you don't have permission to update an Opportunity in Salesforce, your AI can't do it either. If an action isn't available via the API, it simply doesn't exist in Venn.
Permission Controls
You can adjust all permissions directly inside Venn — from one simple place, updated anytime:
Read-only access: Restrict the AI to retrieval only — no writes, no updates.
Scoped write access: Allow writes for specific object types only.
Venn works wherever OAuth connections are already allowed, and respects IT policies wherever they're not. It does not create new access or override your organization's existing security policies.
What Data Does Venn.ai Access?
Venn.ai only accesses data required to fulfill a specific request. When your AI asks Venn.ai to retrieve a Salesforce record, Venn.ai queries Salesforce for that record and returns the result. It does not pre-fetch, cache, or index your data.
Venn acts as a secure layer between your AI tools and business apps. It can see that a connection happened — the endpoint URLs, timestamps, and which tools were accessed — and logs connection metadata for system monitoring and improvement. It does not see or store the actual content being transmitted.
Venn.ai is powered by Barndoor, a company purpose-built for AI access controls and governance.
Does Venn.ai Store My Business Data?
Your business data stays yours. Venn.ai only processes your requests in transit and never logs their content. The only data we retain is lightweight usage metadata such as which apps and AI clients you've used, so we can surface insights in your Activity page.
Does My Data Get Used to Train AI Models?
No. Venn.ai does not use your business data to train AI models. Your data processed through Venn.ai follows the data policies of your AI subscription provider — Anthropic for Claude, OpenAI for ChatGPT, and others including VS Code, Cursor, and OpenClaw.
FAQ
Q: Does Venn.ai store my business data?
A: Venn.ai does not store or log the content of your business app data. Request logs may be retained for security and debugging purposes per our data retention policy.
Q: Does my data get used to train AI models?
A: Venn.ai does not use your business data to train AI models. Your data processed through Venn.ai follows the data policies of your AI subscription provider (Anthropic for Claude, OpenAI for ChatGPT, VS Code, Cursor, or OpenClaw).
Q: Is Venn.ai secure and compliant?
A: Yes. Venn is SOC 2 Type II compliant under the Barndoor audit. Learn more here.
