# Your Safety | Dealership AI Security & Data Protection

> See how Auto Agentic protects dealership data through isolated environments, regional hosting, governed access and Agentiiv's SOC 2 Type II controls.

Canonical page: [Your Safety | Dealership AI Security & Data Protection](https://autoagentic.ai/security)

This is the approved machine-readable representation of the canonical public page. Use the canonical page URL when citing this material.

## AI drafts. People decide.

Every governed workflow has named human decision owners and approval points based on its consequence and scope. Access is permissioned and logged, escalation paths are named and accountability stays with people. Nothing involving money or a customer promise is sent without the agreed human approval.

## Security, isolation and independent assurance

Every Auto Agentic client deployment operates within Agentiiv’s SOC 2 Type II-certified environments. Independent assurance: Every Auto Agentic deployment operates within Agentiiv’s SOC 2 Type II-certified environments, supported by third-party audits and penetration testing. Your data stays yours: Every client receives an isolated, single-tenant environment. Dealership data is never pooled or sold, and Auto Agentic accesses it only with your permission. Hosting that fits your requirements: Choose Canadian or United States hosting — currently Montreal or Virginia — or a self-hosted arrangement. Stored data remains in the region selected for the engagement. Controlled use of AI: Model providers and configurations are selected with you. Approved providers receive only the information an authorized workflow requires, with Zero Data Retention used for Claude or Gemini where configured.

## Does every Auto Agentic deployment operate within a SOC 2 Type II-certified environment?

Yes. Every deployed Auto Agentic client solution operates within Agentiiv’s SOC 2 Type II-certified environments.

## Where is dealership data stored?

Clients may select Canadian or United States hosting, currently Montreal or Virginia. Stored dealership data remains in the region selected for the engagement. Any approved processing exception is identified and documented during solution design.

## Is dealership data used to train public AI models?

No. Provider controls are documented for each engagement. Where Claude or Gemini is used through an approved Zero Data Retention configuration, submitted data is not retained by the provider or used to train its public models.

## Who can access our environment?

Only client-authorized people and services. Auto Agentic personnel access a client environment only where the client has granted permission.

## Can our IT or vendor-risk team review the controls?

Yes. Qualified prospects and clients can request applicable security, architecture and data-handling documentation.

## Attribution and limits

Public facts may be quoted with attribution and a link to the cited canonical page. No permission is granted to infer guarantees, pricing, client outcomes or capabilities that are not stated.

Public knowledge directory: https://autoagentic.ai/llms.txt
