Trust center
Product, data, and scientific boundaries
This page identifies the public support paths and the boundaries the application enforces. It does not claim a certification, regulatory status, DPA, or BAA that has not been confirmed for a customer engagement.
Security and incident reporting
Projects, uploads, jobs, and results require an authenticated account and are authorized by the product API. Report a suspected vulnerability through the published security contact.
Open security pageService status
The public health endpoint reports whether the application process is reachable. Scientific operations can have separate readiness states inside the workspace.
View service statusData and model sources
Released model pages identify their supporting publication and immutable release. Tool pages identify the scientific method and upstream source where that evidence is part of the release. Report record-level corrections from the relevant artifact page.
Retention and deletion
Project trash defaults to 60 days and can be configured by an authorized organization administrator. Active records, backups, audit evidence, and account-deletion requests have different lifecycles; the privacy policy states each boundary without promising a blanket deletion window.
Subprocessors and regions
The current architecture uses Azure, Supabase, Google Gemini for server-routed Chat Lite, and Resend for invitation email. The primary application region is East US 2; other providers and recovery systems may process in other regions.
Read provider routingAnalysis and model privacy
Private scientific work runs on Ubi-managed workers unless a tool release panel identifies a third-party API. Ubi Biologics does not train models for other customers or the public on private content without explicit written consent. Provider-specific retention terms must be confirmed in the applicable agreement.
DPA, BAA, and regulated-data posture
The public Service does not claim a DPA, BAA, security certification, formal penetration-test cadence, or regulated-data boundary. These controls and any residency commitment must be confirmed in a written customer agreement before protected or regulated data is submitted.
Contact Ubi BiologicsChanges and research-use boundary
Model and tool pages expose release-specific versions and provenance where available. Ubi Biologics scientific outputs are for research use and must be interpreted within each method's stated assumptions, qualification status, and limitations. Deployment-verified application notes and artifact-specific change records are linked from the public changelog.
Open changelogTrust page last updated: 1 August 2026.