SECURITY & TRUST

Visualise Info Trust Centre

A clear view of the security, infrastructure, privacy and assurance position supporting Helios. The information here is deliberately scoped: deployment-specific commitments are confirmed during procurement and contracting.

Last reviewed

Clear answers for enterprise review

Helios can be operated as a managed service or deployed into customer-controlled infrastructure. This Trust Centre separates company-level assurance from product capabilities and from commitments that depend on a particular deployment.

This page is an overview, not a certification statement, service-level agreement or substitute for contractual security and privacy terms.

02

Infrastructure & Isolation

Helios uses a Kubernetes-based architecture that supports managed and customer-controlled deployment models.

  • UK-hosted managed infrastructureManaged Helios deployments primarily use Civo infrastructure hosted in the UK. The specific hosting arrangement is confirmed for each deployment.
  • Customer isolationClient infrastructure is siloed. Managed clients are not hosted together on the same server or Kubernetes cluster.
  • Deployment portabilityKubernetes supports consistent deployment across managed infrastructure and suitable customer-controlled environments.
  • On-premises optionOn-premises deployment is achievable where customer or organisational requirements call for it.
  • Selected network servicesCloudflare is used for selected networking and security infrastructure, including tunnels.

UK-hosted managed infrastructure does not constitute a blanket data residency guarantee. Location and processing requirements are agreed for the relevant deployment.

03

Identity & Access

Authentication and application authorisation are separate, connected responsibilities within Helios.

Authentication

Helios uses Clerk for user authentication. Single sign-on and multi-factor authentication are supported.

Authorisation

Clerk identity feeds into the Helios permissions model, keeping sign-in separate from application access decisions.

Fine-grained access

Permissions can be applied across users and groups, sites, features, entities and content where the relevant Helios capability supports them.

04

Application Security

Application assurance is supported through transport security, code analysis and controlled release practices.

  • HTTPSHelios is accessed over HTTPS.
  • Code analysisAutomated code analysis is performed during pull requests before changes are published
  • Release managementHelios uses defined release processes and semantic versioning.
05

Resilience & Recovery

Recovery arrangements are shaped around the infrastructure and operating model selected for each customer.

Configurable backups

Backup policies are configurable to support deployment-specific requirements.

Disaster recovery

Disaster-recovery capability exists across hosted and local infrastructure. The exact recovery design depends on the deployment.

Availability commitments

Availability depends on the selected deployment, supporting infrastructure and contractual terms. We do not publish a blanket Helios SLA.

06

Data & Privacy

Visualise Info can act as controller or processor depending on the processing context and the relationship with the customer.

  • Contractual rolesA Data Processing Agreement is available for applicable customer-controller and Visualise Info processor relationships. It is provided for legal review during contracting rather than published here.
  • RetentionCustomer data-retention requirements can be client-specific and are handled under the applicable agreement.
  • End of servicePersonal data is returned or deleted at the end of processing or service in accordance with the applicable agreement.

Privacy and legal documents

Website Privacy PolicyHow this website handles personal information
Helios Privacy PolicyAvailable at /privacy-policy within each Helios deployment
Helios EULAAvailable at /eula within each Helios deployment

The Website Privacy Policy and Helios Privacy Policy are separate documents. Helios links its Privacy Policy and EULA from the application Help and Settings areas.

Privacy contact

For privacy questions or data-subject requests, email privacy@VisualiseInfo.com.

07

Enterprise Assurance

Procurement and security review can go beyond the public overview where a customer needs to assess Helios against its own requirements.

  • Questionnaires and evidence reviewCustomer security questionnaires and evidence reviews are supported as part of procurement.
  • Assurance document requestsProcurement and security teams can request certification evidence, applicable privacy and legal documents, DPA review, infrastructure and deployment information, and responses to security questionnaires. Materials are provided as appropriate to the review; access may be limited to a controlled review and appropriate confidentiality terms.
  • Deployment-specific answersInfrastructure, backup, recovery, availability and data-handling requirements can be reviewed against the proposed deployment and contract.
  • Technical testingActive vulnerability scanning, penetration testing and other technical testing require prior written agreement and an agreed scope.

Bring us your security and procurement questions.

We can discuss the proposed Helios deployment, receive a security questionnaire and agree the appropriate evidence and review route.