EU hosting is a feature, not a footnote.
How Ferret OSINT is architected for European compliance, data residency, and auditability. This page is maintained by Ferret OSINT to answer common security and privacy questions about the platform.
European infrastructure only
Ferret OSINT is deployed exclusively on European cloud infrastructure. No data — application, telemetry, or model inference — leaves the EU.
Compliant by design
The platform is built around GDPR principles: purpose limitation, data minimization, and a right-to-erasure workflow that reaches every stored artifact.
Immutable, append-only log
Every query, export, and configuration change is recorded to a cryptographically signed log. Read-only regulator access is available on request.
AES-256 at rest, TLS in transit
All customer data is encrypted at rest with AES-256 and in transit with TLS 1.3. Keys are managed in EU-region key management services.
Role-based, SSO-enforced
SAML and OIDC single sign-on. Fine-grained roles for investigators, reviewers, and auditors, with per-case scoping and MFA enforcement.
EU-based model hosting
AI features run on European-hosted models. Prompts, retrieved evidence, and generated outputs never leave EU infrastructure.
Where Ferret ends and your controls begin.
Ferret provides
- EU-hosted infrastructure and encryption
- Immutable per-tenant audit trail
- Role-based access primitives and SSO
- EU-based AI inference
You configure
- User roles, MFA, and SSO enforcement
- Retention policies aligned to your DPA
- Source packs and query scopes per team
- Incident response and regulator contacts
This page describes app-visible platform controls. It is not an independent certification and is not a substitute for a signed data processing agreement. For DPA, subprocessor list, or specific compliance evidence, contact us.
See what your team could find this week.
A 30-minute walkthrough of Ferret OSINT with a real investigation scenario. No sales fluff.