Lenders, VCs, and owners hold us to a high bar — so trust is engineered into how we handle data, scope access, and sign every report we produce.
From isolation and least-privilege access to signed, verifiable reports — every layer is designed to stand up to scrutiny.
Customer data is logically isolated and encrypted in transit and at rest. Each workspace sees only its own data — never another tenant's.
We operate to SOC 2 controls and align our data practices with GDPR, including data-subject rights and clear processing boundaries.
Every figure carries a provenance tier — from api_verified down to self_reported — so you always know how strongly a claim is backed.
Reports are cryptographically signed and independently verifiable through public verification, so any change after issue is detectable.
Connections request read-only, least-privilege OAuth scopes — Inspex reads what it needs to verify, and nothing more.
Borrower data requests are time-boxed, and the platform never exposes stored credentials. You see verified results, not secrets.
Pulled directly from a first-party API connection — the highest-confidence tier.
Confirmed by reconciling two or more independent signals against each other.
Derived by the platform's models from observed signals, clearly marked as an estimate.
Provided by the subject without independent verification — flagged so you weigh it accordingly.
Each report is signed and tamper-evident. Recipients can run public verification to confirm it was issued by Inspex and has not been altered since.
See a verifiable reportOur team is ready to walk through data handling, compliance posture, and verification with your security and credit teams.