> ## Documentation Index
> Fetch the complete documentation index at: https://docs.figr.design/llms.txt
> Use this file to discover all available pages before exploring further.

# Data Protection

> Figr is committed to protecting your data through robust security measures, transparent practices, and compliance with global privacy regulations. Learn how we safeguard your information and design assets.

## Your data belongs to you

**Simple as that.**

Everything you create in Figr—your designs, product context, user flows—it's all yours. We don't sell it. We don't train our AI models on your proprietary designs to make someone else's experience better.

Your competitive edge stays yours.

<Info>
  **Security first:** Every aspect of Figr is designed with data protection in mind, from our infrastructure architecture to our development practices and employee training.
</Info>

## What we don't do with your data

<AccordionGroup>
  <Accordion title="We don't train on your designs">
    Your proprietary designs never become training data for models serving other customers. **Model isolation is strict.** What you build in Figr stays in your account.
  </Accordion>

  <Accordion title="We don't sell your data">
    Never have. Never will. Your customer information, analytics, design systems—none of it gets sold to third parties.
  </Accordion>

  <Accordion title="We don't share designs across accounts">
    Generated designs remain private to your workspace. Other Figr users can't see what you're building. AI interactions are logged only for your audit trail.
  </Accordion>
</AccordionGroup>

## How we protect your data

### Encryption everywhere

All your data is encrypted both in transit and at rest. We use **AES-256 encryption** for storage and **TLS/HSTS** for everything moving between you and our servers.

### Access controls

Only team members who absolutely need access get it. And even then:

* Multi-factor authentication (MFA) required
* Every access is logged and monitored
* Least privilege principle enforced
* Automated revocation when someone leaves

### You control everything

You decide who sees what. You can:

* Set granular permissions across your org
* Export your data anytime
* Delete it whenever you want
* Track every change through audit logs

## Security infrastructure

<CardGroup cols={2}>
  <Card title="Where we host" icon="server">
    U.S.based AWS facilities with 24/7 physical security and access monitoring.
  </Card>

  <Card title="Compliance" icon="shield-check">
    SOC 2 Type II certified. Annual audits plus quarterly internal assessments and penetration testing.
  </Card>

  <Card title="Development security" icon="code">
    Every code change is peer-reviewed, tracked in GitHub, and passes security review before production.
  </Card>

  <Card title="Incident response" icon="bell">
    Documented procedures with defined SLAs. You're notified within 72 hours of any confirmed incident.
  </Card>
</CardGroup>

## For enterprise teams

Need more control? We've got you covered.

<Tabs>
  <Tab title="Identity management">
    **SAML 2.0 integration** with Okta, Azure AD, and Google Workspace.

    Single sign-on means your team uses the same credentials they already know.
  </Tab>

  <Tab title="Audit trails">
    **Immutable logging** of all design activities, user access, and admin changes.

    Track everything. Go back months to see exactly what happened.
  </Tab>

  <Tab title="Custom security">
    Configure IP allowlists, data residency requirements, and custom retention policies.

    Make Figr work within your security framework.
  </Tab>

  <Tab title="Private deployment">
    Need on-premise? We offer private deployment options for teams with specific compliance requirements.

    [Contact us](mailto:hi@figr.design) to discuss your needs.
  </Tab>
</Tabs>

## Want the full security picture?

<CardGroup cols={2}>
  <Card title="Security overview" icon="lock" href="https://figr.design/security">
    Complete details on our infrastructure, compliance, and security practices.
  </Card>

  <Card title="Privacy policy" icon="file-shield" href="https://docs.figr.design/legal/privacy">
    How we handle your data, your rights, and our commitments.
  </Card>
</CardGroup>

<Info>
  **Enterprise customers:** Request our security package including SOC 2 report, security questionnaire responses, and technical architecture overview.
</Info>

## Questions?

If you need specific security documentation or have compliance questions, reach out to our security team at [**hi@figr.design**](mailto:hi@figr.design).
