# Compliance and audit

Zild supports corporate compliance with identity controls, tenant segregation, protected data flows, approved integrations, event history, and traceable administrative actions.

Source: https://zild.ai/en-US/docs/security/compliance

Zild supports corporate compliance with identity controls, tenant segregation, protected data flows, approved integrations, event history, and traceable administrative actions.

## Compliance controls

- Access control by identity, role, group, tenant, and operational scope.
- Data protection in transit and at rest, with minimized disclosure to external services.
- Official channels and approved integration contracts for business data exchange.
- Retention, privacy, and access practices aligned with customer policy and applicable requirements.

## Auditable events

Audit records can cover authentication, access, user and role changes, channel configuration, integrations, agent updates, automation and task execution, conversational activity, failures, exceptions, and state changes in critical workflows.

## Audit data principle

Record enough context to identify who performed an action, when it happened, the relevant tenant or operation, and the outcome. Avoid copying secrets or unnecessary sensitive content into audit records.
