Our Security Practices
Last updated: April 18, 2026
Vessel Earth, LLC is a sole-practitioner AI workflow consulting firm. This page summarizes the security practices we maintain in the operation of our business and delivery of client engagements.
Cloud Infrastructure
We operate a single AWS account (us-east-1) owned and managed solely by the principal consultant. Our infrastructure is limited to a public-facing website and a small number of client-specific application components. Security controls include:
- IAM least-privilege access — no shared credentials, no standing elevated permissions
- Encryption at rest via AWS-managed keys on all storage services
- HTTPS-only endpoints enforced across all web-facing services
- CloudFront for edge delivery and DDoS mitigation
- Multi-factor authentication enabled on all AWS account access
Endpoint Security
All development and business operations are conducted on a single managed workstation running endpoint protection software with real-time threat detection. Multi-factor authentication is enabled on all business accounts.
Client Data
Vessel Earth does not store client data in its own infrastructure. Consulting engagements are delivered through client-controlled systems wherever possible. Where third-party tools are used to process client data, clients are notified in advance. See our Privacy Policy for sub-processor disclosures.
Access Controls
All business systems are accessed by the principal consultant only. No third-party contractors or subcontractors are granted access to client systems or data without explicit client authorization.
Code Security
Software developed for client engagements undergoes AI-assisted automated security review prior to deployment. Code is maintained in version-controlled repositories with deployment gated on review completion.
Incident Response
In the event of a suspected security incident affecting client data, Vessel Earth will notify affected clients promptly and cooperate fully with any investigation. Security concerns can be reported via the contact information below.
Data Breach History
Vessel Earth has not experienced a data breach or security incident involving client data.
Vessel Earth, LLC
Contact us