Govern AI tools without monitoring your people.
GovernKit stores the records your team creates: requests, policies, approvals, and audit events.
How we protect your account and records
Traffic is encrypted with TLS, product data sits in managed Postgres with encryption at rest, and backups expire within 30 days.
Every user can turn on 2FA with QR setup and backup codes.
Each team has its own members, tools, policies, and billing, and team data stays separate.
Owner, admin, manager, and member roles are built in, and sensitive actions are permission-checked.
Card details go to Stripe, never to our servers.
Every meaningful event lands in a chronological, filterable audit log.
Pricing cards show the same limits the product enforces.
Export your personal data or whole workspace anytime, and delete your account without a support ticket.
GDPR compliant. Your data stays yours.
See, export, or erase your data from your own settings. The details are spelled out in our Privacy Policy and Data Processing Addendum.
What we deliberately don't collect
The safest data is data we never hold.
- Tool names, vendors, and categories
- Request descriptions and decisions
- Policies, versions, and acknowledgements
- Names, emails, roles, and audit events
- Prompts or AI conversation content
- Your files or confidential documents
- Browsing activity or screen data
- Anything requiring agents or extensions
We can walk you through our practices or help with your vendor questionnaire.