TRUSTS & SECURITY

Security built for the data
your science demands

ReactWise handles some of the most sensitive process-chemistry data in the pharmaceutical industry. Here is how we protect it - independently audited and certified.

Our SOC 2 report, ISO certificate and penetration test results are available on request.

Request access to our reports →

ISO 27001 certified badge
ISO/IEC 27001:2022
Certified information security management
SOC2 Type 2 badge
SOC 2 Type 2
Independently audited controls
Security Badge Icon
Penetration tested
Independently verified by security researchers

How ReactWise uses AI

ReactWise runs on two distinct kinds of intelligence. Understanding the difference matters, because they handle your data very differently.

MACHINE LEARNING
Our optimization engine
At the heart of ReactWise is our proprietary Bayesian optimization engine. It is built on statistics and mathematics - Gaussian processes with bespoke acquisition functions - to decide which experiments are most worth running next.
  • Does not use large language models.
  • Runs in our isolated AWS environment.
  • Your experimental data is never sent to any third-party model provider.
This is the part of ReactWise that finds your optimal process conditions. Every suggestion is statistically grounded and explainable.
ARTIFICIAL INTELLIGENCE
LLM-powered features
Separately, we offer large language model features that speed up your workflow - including Vera, our in-app AI assistant. These can summarize results, suggest next steps, help propose parameter spaces, and let you work with your data more efficiently.
  • Powered by AI models on Amazon Bedrock.
  • Data is never retained or used to train AI models.
  • Fully optional - LLM features can be disabled for your workspace at any time. Just get in touch.
These features take the friction out of working with your data, so you get to decisions faster.

Enterprise-Grade
AI Security

All LLM inference runs on Amazon Bedrock.
Your data remains entirely yours.

Never used for training
Under AWS's terms, content sent to Amazon Bedrock is not used to train any foundation model and is not shared with model providers (see Amazon Bedrock - Security, Privacy & Responsible AI).
Private networking
Traffic between ReactWise and Bedrock flows over AWS PrivateLink - Amazon's private backbone, not the public internet.
No cross-customer sharing
Your data, along with any results and insights generated from it, is never shared across customers or used to train models.

How we store and protect your data

ReactWise is hosted on Amazon Web Services. Our security model is layered - no single control is the only thing standing between your data and the outside world.

Encrypted Icon
Encrypted in transit & at rest

Data is encrypted in transit using TLS 1.2 or higher, and encrypted at rest in AWS. Encryption keys are managed through AWS Key Management Service.

AWS icon
Hosted on AWS

Your data is stored on Amazon Web Services infrastructure, with access governed by identity-based policies and least-privilege controls.

Logs Icon
Audit logs

Access and activity are logged, so security-relevant events can be reviewed. Audit logs are available on request for enterprise customers.

Backup Icon
Backups

Customer data is backed up daily across independent services, so it can be recovered in the event of an incident.

Audit Icon
Independently audited

Our controls are certified to ISO/IEC 27001 and audited under SOC 2 Type 2 by an independent third party. We manage our compliance programme on Oneleet.

Access Icon
Least-privilege access

Internal access is restricted to those who need it, controlled centrally, and continuously reviewed as part of our security programme.

Visit our trust center

Our live Trust Center hosts our certifications, security controls, penetration test results and supporting documentation - maintained continuously, not just at audit time. It runs on Oneleet.
Last reviewed: June 2026 · Questions about security? Contact security@reactwise.com