Get in touch

Product

OverviewThe foundational layer between your enterprise systems and everything you build on them.Business IntelligenceNatural language questions turned into dashboards, built on your definitions.AgentsEnd-to-end execution of the processes your business runs on.Internal AppsBuild the apps, forms, and tables your team works in.OntologyThe source of truth for what your business objects are and how they relate.

Industries

OverviewHow Primero deploys across sectors.Consumer Packaged GoodsDeductions, payables reconciliation, and trade spend, without another spreadsheet cycle.InsuranceClaims evaluation, reserves, and fraud detection, with every case traceable.Health & FitnessPayables, rent, and general services for operators running hundreds of locations.Financial ServicesCredit files, account opening, and fraud casework, with your team approving every step.ManufacturingSpare parts inventory, RFQ quoting, and production reporting on real operating data.RetailSupplier payments, collections, and order release, inside the systems stores already use.

Resources

TeamFounders, operators, and the people building Primero.AboutFounder track record, company background, and operating thesis.NewsEpisodes, announcements, and what Primero is publishing.

Language

EnglishENEspañolESPortuguêsPT

Product

OverviewBusiness IntelligenceAgentsInternal AppsOntology

Industries

OverviewConsumer Packaged GoodsInsuranceHealth & FitnessFinancial ServicesManufacturingRetail

Resources

AboutTeamNewsGet in touch

Language

EnglishEspañolPortuguês

Security

Overview of Primero AI security practices and technical safeguards.

Last updated: January 27, 2026
Owner: Security & Engineering

Overview

This page summarizes how Primero AI protects customer data and systems based on our platform implementation and operating practices.

Data protection & encryption using AES-256-GCM

  • Application-layer encryption for sensitive configs. Connection configuration and other secrets are encrypted before storage.
  • Token secret protection. Agent token secrets are encrypted at request and validated using constant‑time comparison to reduce timing attacks.
  • Third‑party credentials protection. GitHub tokens and app secrets are stored in encrypted form, and decrypted only when needed.

Access control

  • Authenticated access. Protected API procedures require an authenticated session before execution.
  • Organization scoping. Resource and analysis access checks enforce organization ownership boundaries.
  • Role-based permissions. Admin- and super‑admin‑only procedures are gated by role checks.

Storage & file access

  • Object storage with signed URLs. Files stored in object storage are accessed via short‑lived signed URLs (5‑minute default) to limit exposure.
  • Server-side access checks. Storage access is mediated by the API and returns explicit error codes for missing or unauthorized objects.

Query safety controls

  • Read-only SQL enforcement. SQL generation and execution is constrained to SELECT statements and rejects DDL/DML, multiple statements, and known dangerous patterns.

Secure development & validation

  • Schema-validated inputs. API inputs are validated via shared schemas to reduce malformed or unsafe requests.
  • Consistent error handling. Authorization failures return standardized error codes without leaking sensitive details.

Incident response & vulnerability reporting

If you believe you have found a security issue, please report it via our Vulnerability Disclosure page or contact us through the Contact form.

Compliance

If you require specific compliance documentation (e.g., SOC 2, ISO 27001, GDPR), contact us and we will share the latest materials available.

Primero AI

The AI Transformation Company of Latin America

Product

Business IntelligenceAgentsInternal AppsOntology

Industries

CPGInsuranceHealth & FitnessFinancial ServicesManufacturingRetail

Resources

About usTeamNewsContact

Legal

Privacy noticeTermsSecurity
© 2026 Primero AI
LanguageEnglishEspañolPortuguês