Data that stays under your control.

Timberline is built for organizations that cannot treat sensitive information casually. Customer data is used to provide the service to your organization—not to train shared models, not to improve another customer’s experience, and not to become part of a shared data pool.

Talk with Timberline

Workspace privacy

Your organization

Isolated environment
  • No shared model training

    Customer information is never used to train shared models or improve the service for other customers.

    Model trainingOff
  • Private by default

    Work stays private to the people who are given access.

    Visibility: Private
  • Controlled access

    Invitations, SSO or MFA sign-in, and permissions decide who can enter and what they can see.

    SSO or MFA Care Management Compliance
  • Defined retention

    Administrators set how long chats are kept.

    Chat retention · 90 days Admin control
  • Controlled connections

    External systems are connected deliberately and scoped to their intended use.

    Connected system Scoped
  • Tenant isolation

    Your environment is separated from every other Timberline customer.

    Dedicated keys AES-256 at rest

What happens to your data.

From the moment information enters Timberline to the day it is deleted, it is handled inside your organization’s environment, under the controls you set.

  1. 01Sources
    Chats Uploads Connected systemsScoped
    Signed in with SSO
  2. 02Processing
    Private inference · Your Timberline environment Public model API
  3. 03Encryption & access
    TLS 1.2+ in transit AES-256 at rest Dedicated keys
    Access
    Care Management Compliance
    Only people you give access
  4. 04Chat retention
    30 days Admin control

When it comes in

Information enters through your team’s chats, uploads, and the systems you choose to connect. Only invited members of your organization can add to the workspace, signing in through your SSO or with a password and multi-factor authentication, and each connection is scoped to its intended use.

While it’s in use

Prompts and documents are processed with private inference inside your isolated Timberline environment. They are not sent to a public third-party model API, and they are never used to train models. If an administrator enables web search, only the search query goes out, with identifying details removed first.

While it’s stored

Chats, projects, and documents are encrypted in transit with TLS 1.2+ and at rest with AES-256, using keys dedicated to your organization. They are visible only to the people you give access.

When it’s removed

You decide how long chats are kept. Chat retention is configurable through administrative controls, so your organization sets the period that fits its policies.

Privacy that’s understandable.

Talk with Timberline