Security at Continuum Hub
Last updated August 1, 2026
An overview of how we protect your data, your code, and your workspace — from infrastructure to access controls.
Infrastructure
Continuum Hub runs on isolated, encrypted infrastructure with data encrypted at rest (AES-256) and in transit (TLS 1.2+).
Workspaces are logically isolated from one another; Enterprise plans can additionally opt into dedicated, physically isolated build capacity.
Compliance
Continuum Hub maintains SOC 2 Type II controls, audited annually by an independent third party. Reports are available to customers under NDA.
Enterprise customers with regional data residency requirements can request EU or US-only data processing.
Access controls
Role-based permissions let you scope what each teammate can view, edit, or deploy within a workspace.
Enterprise plans support SSO via SAML and SCIM-based user provisioning, so access follows your identity provider automatically.
Agent safety
Autonomous agents operate within explicit tool and action permissions you define — nothing runs outside the scope you grant.
Every agent decision is logged with the reasoning behind it, giving you a full audit trail for anything an agent did on your behalf.
Responsible disclosure
We run a coordinated disclosure program for security researchers. If you've found a vulnerability, please report it to hello@continuumhub.online before disclosing it publicly, and we'll acknowledge reports within two business days.