Platform Specialists Integrations Pricing About Book a demo Get early access
Security & trust

An AI workforce you can actually put your name on.

Centralised access. Approval before anything risky. Every action logged. Built so the team that asks “is this safe?” has a real answer.

100%
Credentials held by Lifter. The model never sees a key.
Every action
Logged with approver, decision, and result. Exportable to your audit pipeline.
3 deployments
Our cloud, your cloud, or hybrid. Pick what fits your posture.
The principles

Six commitments we make on day one.

Most AI security pages drown in jargon. Here is how we think about it, in plain terms, the same way we'd explain it on a kickoff call.

Your data stays yours.

We never use your data to train models. Deploy in our cloud in Sydney, in your own AWS / GCP / Azure account, or split between the two. You decide where it lives.

The model never sees your keys.

Logins to Shopify, Klaviyo, Slack, and the rest of your stack live with Lifter, encrypted. Agents get the ability to do something. They never see the credential that lets them do it.

Risky actions pause for a human.

Refunds, customer messages, paid spend, anything that moves money or changes inventory — they all pause in the channel your team already works in, for someone to approve before the agent acts.

Every action is logged.

Who asked, what ran, what it touched, who approved it. Exportable in real time to your audit pipeline so finance, IT, and the board can see what's happening without asking.

Permissions by person, agent, and tool.

Your support specialist can refund up to $50 without asking. Your trade-report specialist can't refund at all. You set the lines, we enforce them.

One workspace per customer.

Your team's data sits in its own isolated environment with its own storage. Not a shared database, not a logical partition. Real separation.

Where your data lives

Pick the deployment that fits your posture.

Three options. Pick the one that matches the conversation you'd have with your IT lead.

Option 01

Our cloud

Hosted in Sydney, managed and monitored by us. Right for teams who want a working deployment without a procurement cycle. The fastest path to value.

Option 02

Your cloud

Runs entirely inside your own AWS, GCP, or Azure account. Your data and your team's customer information never leave your perimeter. Right for regulated industries or strict data-residency requirements.

Option 03

Hybrid

The admin UI lives in our cloud so we can keep shipping product improvements. The runtime — credentials, tool calls, customer data — runs in your account. A practical middle ground.

The control surface

Allow. Ask. Deny.

Every tool an agent can use has one of three settings. You decide which, per person and per role.

Allow

Safe, reversible work. The agent runs without interrupting anyone. Drafting an email, building a dashboard, summarising a thread.

Ask

Anything that touches a customer, costs money, or changes inventory. The agent pauses in the channel your team already uses — for a human to approve, deny, or ask for context first.

Deny

The tool isn't available to that specialist at all. They don't see it. They can't try to use it.

The audit trail

Every action, every approval, in one place.

Not just outcomes. Not just errors. The full picture of what your AI workforce did, who approved it, and why.

What we capture

For every action.

  • Who: which specialist, which session, which user kicked it off
  • What: the action and the system it touched
  • When: precise timestamp
  • Permission: Allow, Ask, or Deny — and who approved it if it was Ask
  • Result: success, failure, with secrets redacted on the way out

Where it goes

Your pipeline, your retention.

In real time, into the audit pipeline you already use. S3, Datadog, Splunk, or your SIEM of choice. We don't gate the data behind our UI.

Retention follows your policy, not ours. If your environment requires 7 years, we keep it 7 years. If 90 days is enough, we keep it 90 days.

Your IT lead is going to ask “is this safe?”— we want to be the ones who have the real answer.

The Lifter approach to trust

Credentials

The model never sees a credential. Ever.

Agents see actions, not API keys. The Gateway holds the credentials, looks up the right one per call, checks the rules, and never lets a secret reach the model.

1 Agent Wants to issue a refund. Sees the action's name, nothing more.
2 Gateway Looks up the right credentials. Checks the rules: auto-approve, ask, or block.
3 Human Approves in the team's channel, with full context, recorded for audit.
4 Gateway Performs the action against the vendor on the agent's behalf.
5 Agent Gets the result. No credentials ever exposed to the model.

Locked down

Secrets stay with us.

Encrypted at rest. Resolved in memory at call time. Never delivered to the model, never logged in clear.

Configurable

Different rules per team.

Different stances for different agents, different accounts, different value thresholds. You set them; we enforce them.

Auditable

Every action traceable.

Who did what, when, and under which rule, for every call — recorded and exportable to your audit pipeline.

Want the longer write-up?

Send us your security questionnaire.

Email security@lifter.work and we will reply within one business day. If you need a call with our engineering lead, just ask in the email.