ISO 27001 certified
Independent auditors verify our security controls annually against ISO 27001, giving your compliance and legal teams documented assurance that Taxmarc meets the international standard for information security management.
Independent auditors verify our security controls annually against ISO 27001, giving your compliance and legal teams documented assurance that Taxmarc meets the international standard for information security management.
TLS to the browser and an encrypted WireGuard tunnel between the application and the AI hardware — plaintext never crosses the open internet.
Admin features sit behind Microsoft Entra ID single sign-on with server-side, role-based authorization checked on every request.
Prompts are processed on Taxmarc-owned GPU hardware, never sent to an external AI provider, and never used to train a model.
No. The assistant is inference-only on Taxmarc-owned hardware. Your prompts, messages, and any captured data are never used to train or fine-tune a model.
On Taxmarc's own sovereign GPU, reached over an encrypted private network. Nothing is sent to a third-party AI provider, and prompts are not persisted on the GPU.
Through Microsoft Entra ID single sign-on, limited to the @taxmarc.com domain, with role-based permissions enforced on the server for every request.
It's captured server-side with restricted permissions, kept out of source control, and forwarded to Taxmarc over a secure mail path. Personal identifiers are masked before they reach the assistant.
Email info@taxmarc.com with “Security” in the subject. We welcome responsible disclosure and will acknowledge legitimate reports.
We're happy to walk your team through our controls and answer due-diligence requests.
Get in touch →