Built for the Most Sensitive Work.

Architecture and engineering projects

involve confidential client information, proprietary site data, unreleased designs, and in some cases work product subject to professional confidentiality obligations. We take that seriously. Security and data privacy are not features we added after the fact — they are foundational to how the Appia platform is designed.
CORE COMMITMENT

Your Data Stays Yours

Client project data, drawings, specifications, and work product processed through the Appia platform are used for one purpose: delivering work for that client. We do not use client data to train AI models. We do not share client data across firms or projects. Your data is yours.

DATA HANDLING

How We Handle Your Data

No model training on client data.

Project files, drawings, specifications, and correspondence that pass through our platform are never used to train or fine-tune AI models — ours or any third party's.

Data isolation by project and firm.

Each member firm's data is logically separated. Project data does not cross client or firm boundaries.

Retention and deletion.

We retain project data for the period necessary to complete the engagement and meet applicable professional records-keeping obligations. We honor deletion requests consistent with our retention policies.

INFRASTRUCTURE

Technical Security

Encryption.

All data is encrypted in transit (TLS 1.2+) and at rest (AES-256).

Access controls.

Role-based access controls ensure that only authorized personnel can access project data. Access is logged and auditable.

Cloud infrastructure.

The Appia platform is hosted on [AWS / Azure / GCP — select]. We use enterprise-grade cloud services with industry-standard availability and redundancy commitments.

Vulnerability management.

We conduct regular security reviews of our infrastructure and application layer. Identified vulnerabilities are prioritized and remediated.

COMPLIANCE

Certifications & Standards

We are working toward SOC 2 Type II certification. Until that certification is complete, we are happy to walk prospective partners through our security controls in detail upon request.

For engagements involving federal, state, or municipal clients with specific data handling requirements, we are prepared to discuss project-specific security arrangements.

PROFESSIONAL CONFIDENTIALITY

A Note on Professional Obligations

Architecture and engineering work is subject to professional confidentiality obligations that go beyond standard data security. Client site information, unreleased project designs, and proprietary building programs can have significant commercial and competitive sensitivity.

Appia’s member firms operate under the same professional confidentiality standards they always have. The platform we are building reinforces — not relaxes — those obligations. Our AI-enabled tools are deployed within the same professional framework as any other tool our licensed professionals use.

CONTACT

Questions About Security

If you have specific security or data privacy questions, we’re happy to discuss them directly.