Trust, privacy, and governance (short briefing)

Where to audit Sudar responsibly, organisation toggles vs open-source posture pack.

Sudar publishes a trust pack (threat modelling, subprocessors overview, audit logging guidance) beside the codebase for security reviews, not hidden behind sales calls.

Inside Studio, Governance summarises organisational commitments: tutor safety, personalization limits, retention policies, and links to subprocessors when your legal team needs proof.

Learners should expect:

  • Course content and Sudar prompts stay inside the deployment model your organisation chose (cloud vs private inference).
  • Sudar Memory stores only what policy allows; learners can review surfaced memories when the product exposes that surface.

Read the detailed documents in docs/trust/ when you need exportable evidence for assessments.