Legal

Security

How we approach security for this site, our software distribution, and our products. Effective September 1, 2026.

This website

The site is a static website served over HTTPS (TLS) on Vercel infrastructure with DNS managed at Cloudflare. It has no login, stores no customer data, and sets no tracking cookies — which keeps its attack surface deliberately small.

Software distribution

GeometriX packages are distributed through PyPI under maintained project accounts. The knowlytix family is Apache-2.0 — its source is inspectable in the installed distribution. The modeva package uses signed-license activation. We recommend installing pinned versions in production environments.

Security in the products

Security and verifiability are design goals of the platform itself: retrieved facts carry integrity verification, audit records are tamper-evident, policy bundles are signed and support multi-signature approval, and agent tool calls pass deterministic gates before execution. These are shipped product capabilities, described in detail on the Governance page; we do not claim third-party certifications for this website or the products, and will state any such certifications explicitly if and when obtained.

Reporting a vulnerability

If you believe you have found a security issue in this website or in GeometriX software, please email info@geometrixintelligence.ai with “SECURITY” in the subject line. We ask for a reasonable opportunity to investigate and remediate before public disclosure, and we will acknowledge reports promptly.