From b4107306edbcde7240861b67b79ce5b9c5663c82 Mon Sep 17 00:00:00 2001
From: dleffel
+ Built with security-first principles to meet stringent enterprise requirements while
+ maintaining developer productivity.
+
+ Every feature built with enterprise security requirements in mind
+
+ Roo Code is designed with{" "}
+
+ Your code stays protected with multiple layers of security and user control.
+
+ Most operations happen locally within VSCode, minimizing external data exposure.
+
+ Only explicitly selected code is sent to AI providers with your approval.
+
+ Built-in .rooignore system prevents sensitive files from being accessed.
+
+ All data encrypted at rest and in transit using industry-standard methods.
+
+ Built to meet the highest standards of enterprise security and compliance.
+
+ Multi-layer protection with zero-trust approach.
+
+ Get answers to the most frequently asked security questions.
+
+ A: Only to AI providers you explicitly configure and approve. Code
+ never leaves your environment without explicit consent.
+
+ A: Stored in VSCode's encrypted secret storage, integrated with your OS
+ keychain. Never transmitted in plain text.
+
+ A: Yes. Complete audit logs show exactly what data was sent to which
+ services, when, and by whom. Plus, our open-source codebase allows your security team to
+ verify exactly how data flows through the system.
+
+ A: The .rooignore system automatically prevents access to sensitive
+ files (credentials, secrets, proprietary code).
+
+ A: Yes. We have SOC 2 Type I certification with Type II currently in
+ observation period. You can monitor our compliance status in real-time at{" "}
+
+ trust.delve.co/roo-code
+
+ .
+
+ A: Yes. You have complete control over which AI providers are enabled
+ and can restrict to specific approved services only.
+
+ Get in touch with our team to discuss security features, compliance requirements, or
+ schedule a demonstration.
+
+ See our enterprise security features in action with a personalized demonstration.
+
+ Reach out to discuss security requirements or technical questions.
+
- A: Stored in VSCode's encrypted secret storage, integrated with your OS
- keychain. Never transmitted in plain text.
+ A: Stored in VSCode's encrypted secret storage, integrated with
+ your OS keychain. Never transmitted in plain text.
Enterprise-Grade Security
+
+
+ Security-First Design
+
+ Enterprise-Grade
+
+ Security Highlights
+ 🔒 Data Protection & Privacy
+ Local Processing First
+ Selective Sharing
+ Smart Filtering
+ Enterprise Encryption
+
+ 🏢 Enterprise Compliance & Controls
+
+ Organizational Management
+
+
+ Compliance Ready
+
+
+
+ 🔐 Security Architecture Highlights
+
+ Multi-Layer Protection
+ Security-First Approach
+
+
+
+ 🎯 Common Security Questions Answered
+
+ Q: Where is our code sent?
+ Q: How are API keys protected?
+ Q: Can we audit what data is shared?
+ Q: What about sensitive files?
+ Q: Is this SOC 2 compliant?
+
+ Q: Can we control which AI providers are used?
+
+
+ 📞 Questions About Security?
+
+ Request a Demo
+ Contact Our Team
+ Why Choose Roo Code Security?
+ Q: How are API keys protected?
- Roo Code is designed with{" "}
-
- Your code stays protected with multiple layers of security and user control. -
-- Most operations happen locally within VSCode, minimizing external data exposure. -
-- Only explicitly selected code is sent to AI providers with your approval. -
-- Built-in .rooignore system prevents sensitive files from being accessed. -
-- All data encrypted at rest and in transit using industry-standard methods. -
-- Built to meet the highest standards of enterprise security and compliance. -
-- Multi-layer protection with zero-trust approach. -
-- Get answers to the most frequently asked security questions. -
-- A: Only to AI providers you explicitly configure and approve. Code - never leaves your environment without explicit consent. -
-- A: Stored in VSCode's encrypted secret storage, integrated with - your OS keychain. Never transmitted in plain text. -
-- A: Yes. Complete audit logs show exactly what data was sent to which - services, when, and by whom. Plus, our open-source codebase allows your security team to - verify exactly how data flows through the system. -
-- A: The .rooignore system automatically prevents access to sensitive - files (credentials, secrets, proprietary code). -
-- A: Yes. We have SOC 2 Type I certification with Type II currently in - observation period. You can monitor our compliance status in real-time at{" "} - - trust.delve.co/roo-code - - . -
-- A: Yes. You have complete control over which AI providers are enabled - and can restrict to specific approved services only. -
-- Get in touch with our team to discuss security features, compliance requirements, or - schedule a demonstration. -
- -- See our enterprise security features in action with a personalized demonstration. -
-- Reach out to discuss security requirements or technical questions. -
-