security & privacy

your data,protected by design.

Saturn is built on modern security practices and is compliant with Brazil's LGPD. A transparent view of how we protect your operation and your customers' data.

security pillars

Six layers
behind every conversation.

Encryption in transit and at rest

All communication uses HTTPS/TLS 1.2+. Sensitive data is stored encrypted at rest with managed keys.

Least-privilege access control

Team access is named, logged and limited to what is strictly necessary to operate and support.

Certified infrastructure providers

Hosted on providers with ISO 27001 and SOC 2 certifications, with high availability, automated backups and isolated environments.

LGPD compliant

We process data in accordance with Brazil's LGPD (Law 13.709/2018), with clear legal bases and a direct channel for data subjects.

Continuous monitoring

Access logs, anomaly alerts and periodic reviews of permissions and dependencies.

Privacy by default

We collect only what's needed. Conversations and customer data are never used to train third-party models.

lgpd

Compliance with Brazil's
data protection law.

We act as processor of the data your company entrusts us with, following the controller's instructions. For visitor data on this website, we are the controller and process only what is needed for commercial contact.

Direct channel for data subjects: privacidade@saturn.ia.br.

your rights

Access & confirmation

Know which personal data we process about you.

Correction

Correct incomplete, inaccurate or outdated data.

Portability

Receive your data in a structured, interoperable format.

Erasure

Request deletion of data processed with your consent.

operations

Retention & sub-processors.

Data retention

Operational data is kept while the contract is active and for the legal period required after termination.

  • Conversations & metrics: throughout the contract term.
  • Audit logs: up to 12 months after capture.
  • Backups: 30-day rolling cycle with automatic overwrite.
  • Deletion requests: handled within 15 business days.

Sub-processors

We work with well-known vendors for infrastructure, messaging and AI models — all under contract and with data protection clauses.

  • Cloud / hostingISO 27001 / SOC 2
  • MessagingWhatsApp Business API
  • Telephony / voiceCarriers with SLA
  • AI modelsEnterprise providers

Detailed list available upon request for active customers.

Have security or compliance questions?

Our team answers technical questions and sends audit documentation.