Trust center

Built for enterprise security. Designed for operator trust.

SOC 2 compliant. Edge-first architecture. All faces blurred, always. US-based, US-hosted. Security isn't a feature we added, it's how the platform was built from day one.

Talk to Our Security Team
Compliance

SOC 2 Type II compliant.

Rabot maintains SOC 2 Type II certification, the industry standard for security, availability, and confidentiality of customer data.

Security

Access controls, encryption, vulnerability management, and incident response.

Availability

Infrastructure uptime, disaster recovery, and business continuity.

Confidentiality

Data classification, retention policies, and secure data handling.

SOC 2 report available under NDA, request it from your account team.

Rabot is deployed at Fortune 500 companies. Enterprise security review is a standard part of every deployment.

Architecture

AI runs at the station. Raw video stays in the warehouse.

Rabot's architecture is edge-first by design. The AI processing that identifies items, detects events, and structures operational data happens locally, at the station, on the edge device. Raw video does not leave the warehouse.

How it works

  • 1

    Cameras capture the station surface during packing.

  • 2

    AI processes the video locally at the station in real time.

  • 3

    Only structured, order-linked data syncs to the cloud: items identified, events detected, cycle times measured, exceptions flagged.

  • 4

    Video clips are stored for replay and dispute resolution, with retention based on your plan tier.

  • 5

    No raw video stream is transmitted to external servers.

Why edge-first matters

This isn't just a privacy measure, it's better architecture. Edge processing means lower latency, lower bandwidth requirements, and faster real-time validation.

Staci Americas runs 19 stations with real-time AI validation. The processing happens at the station, not in a remote data center.

Privacy

All faces blurred. Always. Automatically.

Every face in every frame is blurred before any data is stored or transmitted. This is not optional. It is not configurable. It cannot be turned off.

The camera watches the station surface: what goes in the box, not the person. Rabot captures operations, not people. Item identification, event detection, cycle time measurement, SOP compliance verification, all of this focuses on the work, not the worker.

This is not surveillance.

Security cameras point at people and record everything. Rabot points at the station surface and understands what happened to each order. Different purpose, different architecture, different result.

Rabot protects workers

Operators actually prefer it. When a customer disputes an order, the video proves the packer did their job correctly.

Brilliant Fulfillment recovered 100% of fraudulent claims during peak season, because the video showed exactly what went in the box.

"With Rabot, we're able to monitor every order being packed and enable us to easily swap packers to handle any client order with the help of Rabot's digital work instructions."

— Richard Hurley, CEO, Highline Commerce

Data retention

Clear retention policies. All storage included.

Core

30 days

Included

Plus

60 days

Included

Enterprise

Unlimited

Included

No separate storage fees. No overage charges. Video replay, structured data, and analytics are all covered by your subscription. When the retention window closes, data is automatically purged.

Enterprise customers can configure custom retention policies based on compliance requirements.

Data residency

US company. US infrastructure. Your data stays here.

Rabot is a US-based company headquartered in Texas. All cloud infrastructure is hosted in the United States. Customer data does not leave US-based data centers.

Company

Incorporated and operated in the US

Infrastructure

US-hosted cloud services

Data residency

All customer data stored within the US

Team

Engineering, operations, and support based in the US

Why this matters

Highline Commerce manages fulfillment for 85+ brands, each with their own compliance requirements. US-based hosting and SOC 2 compliance simplify the security review for every new brand onboarded.

Operator perspective

Rabot protects workers.

The most common security question isn't about encryption or data centers. It's about people: "Will my team think they're being watched?"

The camera watches the station surface: what goes in the box. All faces are blurred. The AI identifies items, packaging, and process steps. It doesn't identify people by their appearance.

And operators learn something quickly: the video is on their side. When a customer calls and says the wrong item was shipped, the video proves the packer did their job correctly. When a fraudulent return comes in, the evidence is there. Rabot doesn't monitor workers, it protects them.

Manifest.eco eliminated 90% of dispute liability in 15 days. That's not just a financial win, it means packers stopped being blamed for problems they didn't cause.

FAQ

Security details for your IT team.

How is data encrypted?

All data is encrypted in transit (TLS 1.2+) and at rest (AES-256). This applies to structured operational data, video clips, and all API communications.

What access controls are in place?

Role-based access control (RBAC) across the platform. Portal access is scoped by role: operators see their station, managers see their facility, clients see their orders. SSO integration available for enterprise deployments.

Is SSO supported?

Yes. Enterprise plans support SAML-based SSO integration with your identity provider.

What audit logging is available?

All user actions in the platform are logged: logins, video access, configuration changes, data exports. Audit logs are available to administrators and can be exported for compliance review.

What are the network requirements?

Each station requires a USB connection for the camera and internet connectivity for data sync. Bandwidth requirements are minimal because AI processing happens at the edge. Only structured data syncs to the cloud. Detailed network specifications are available during deployment planning.

What compliance certifications do you hold?

SOC 2 Type II. Additional compliance documentation available under NDA for enterprise prospects.

Can we run a penetration test?

Enterprise customers may request coordinated penetration testing. Contact our security team to arrange.

Who has access to our data?

Access is limited to authorized personnel on a need-to-know basis, governed by our SOC 2 controls. Customer data is logically isolated. We do not share customer data with third parties.

Have security questions? Talk to our team.

We'll walk through our SOC 2 report, architecture, and data handling policies. Enterprise security review is a standard part of every deployment.

Rabot

Sign in to Rabot

Enter your work email to access the dashboard.

Don't have an account? Sign up