Trust Center·Updated September 2026

Security you can inspect,
not just read about.

How we build Kybernao, where your data lives, what can leave your site, and how to reach us about a vulnerability. Documents that need an NDA are one request away.

Security contact
security@kybernao.ai
Disclosure program
Open
Data at rest
On your node
Default egress
None

How we build and run Kybernao.

The controls below are part of the product and of how our own team works. Your security review can check each one against a running node.

Signed releases

Every node image and update is signed, and a node refuses anything it cannot verify. Each release ships with a software bill of materials.

Keys stay with you

Node keys live in the hardware root of trust on the node. Kybernao staff hold no standing credentials for customer nodes.

Access you approve

Support happens in a time-boxed session your operator opens, and every command in it lands in your ledger.

Encrypted everywhere

Data is encrypted at rest on the node and in transit between nodes, sensors and your integrations.

Reviewed changes

Code changes need a second engineer, and the release pipeline runs in isolated build infrastructure.

Tested against ourselves

We run Red against our own environment on the same cadence we recommend to customers, and fix what it proves.

Where your data lives.

Everything Kybernao learns about your environment is stored on the node inside your site. Nothing leaves unless you switch on a data class, and each object that does leave is written to the egress ledger first.

YOUR SITE · SOVEREIGN BOUNDARYIdentity · Entra ID, OktaNetwork · flows, configsOT · passive captureCloud · accounts, rolesKYBERNAO NODETerrain graphFindings and evidenceModels and telemetrySigned ledgerSHOWN WITHFINDINGS + AUDIT ONEGRESSLEDGERfindingsauditrawsecretsOUTSIDE · ONLY WHAT YOU ENABLEYour SIEMSplunk, Sentinel, ElasticFedSpaceSelected state to peer nodes or Kybernao CloudSupport sessionOpened by your operator, written to your ledgerNO EGRESS PATHRaw OT capture · controller project files · live tag values · credentials
Illustrative. Every egress class starts switched off. The diagram shows a site that has enabled findings and audit events.
Data classStored on the nodeCan leave the siteDefault
Findings and evidenceYesTo your SIEM or FedSpace, when enabledOff
Audit eventsYes, signedTo your SIEM, when enabledOff
Terrain graphYesSelected state to peer nodes, or to Kybernao Cloud, through FedSpaceOff
Raw OT captureYes, time-limitedNo egress pathNever
Controller project files and live tag valuesYesNo egress pathNever
Credentials and keysIn the hardware rootNo egress pathNever

Documents for your review.

Ask for any of these and we will send them, or walk your team through them live. Some are shared under an NDA.

Found a vulnerability? Tell us first.

We welcome reports from researchers and customers, and we will not pursue anyone who follows this policy in good faith.

  1. Send the details

    Describe the issue, the affected product or page, and the steps to reproduce it. Encrypt it if you prefer, and ask us for a key.

  2. We confirm receipt

    A security engineer replies to confirm we have it, then keeps you updated while we investigate and fix.

  3. We fix, then credit you

    Once a fix ships we tell you, and with your permission we credit you in the release notes.

In scope

  • kybernao.ai and its subdomains
  • Kybernao node software and updates
  • Command and the node API

Please do not

  • Test against a customer's node or site
  • Access, change or delete other people's data
  • Run denial-of-service or social engineering tests

Frequently asked questions

Do Kybernao employees have access to our node?

Not by default. Staff hold no standing credentials. If you need help, your operator opens a time-boxed support session, and every action taken in it is recorded in your ledger.

Is any of our data used to train shared models?

No. Models that learn from your environment run and stay on your node. Nothing from your site is pooled with other customers.

How do updates reach a disconnected site?

Signed update bundles can be carried in on approved media. The node verifies the signature before installing, exactly as it would online.

Do we have to use Kybernao Cloud?

No. Kybernao Cloud is an optional hosted peer that a node can federate to. Everything on this page, and every product capability, works with it switched off, which is the default.

Can we see the software bill of materials before we buy?

Yes. Request it above and we will send the SBOM for the current release, usually alongside the architecture document.

Who do we contact about a security incident involving Kybernao?

Email security@kybernao.ai. Customers also have a named mission engineer who can open an incident bridge directly.

Walk through your security review with an engineer.

Bring your questionnaire. We will answer it live against a running node.

Site design sessions open

Request a Kybernao demo

Tell us a little about your environment. A Kybernao engineer will follow up to arrange a focused walkthrough.

  • 01Focused architecture walkthrough
  • 02Mapped to your mission environment
  • 03Led by a Kybernao engineer
SECURE INTAKE→ENGINEERING
01Contact coordinatesRequired fields
02Mission profileFor a focused session

By submitting, you agree that Kybernao may contact you about this request.