Security
Enterprise security. Construction grade reliability.
Your construction data remains completely isolated, fully encrypted, and under your control at all times.

Data practices
Built on a foundation of data isolation and encryption
Single-tenant isolation
Each project is provisioned as its own tenant container with separate data stores. Tenants do not share databases, indices, or file buckets, preventing cross-customer data paths.
Always-on encryption
All customer data is encrypted at rest and in transit using industry-standard cryptography. BYOK is available for customers requiring stricter key governance.
No training on your data
Your data serves your organization only. We do not use customer data to train foundation models or build derivative LLMs shared across customers.

Secure identity management built for enterprise teams
Enterprise SSO integration
Integrate with your identity provider using SAML 2.0 or OIDC for Okta, Microsoft Entra ID, Google, and other providers with automated user provisioning.
Role-based access control
Built-in RBAC restricts access by project and role, with SCIM support for automated user lifecycle management including provisioning and de-provisioning.
Minimal permission scopes
Integrations request only the specific permissions required for functionality. Access tokens can be revoked at any time by your administrators.

SOC 2 Type II compliant
Primepoint has completed SOC 2 Type II certification, demonstrating our commitment to the highest standards of security, availability, and confidentiality.

Data you can trust. Answers you can verify.
Every result is traced back to your drawings, specifications, RFIs, and submittals. Answers come from your project data, not from generalized model outputs.
