← Ubi Biologics

Trust center

Product, data, and scientific boundaries

This page identifies the public support paths and the boundaries the application enforces. It does not claim a certification, regulatory status, DPA, or BAA that has not been confirmed for a customer engagement.

Security and incident reporting

Projects, uploads, jobs, and results require an authenticated account and are authorized by the product API. Report a suspected vulnerability through the published security contact.

Open security page

Service status

The public health endpoint reports whether the application process is reachable. Scientific operations can have separate readiness states inside the workspace.

View service status

Data and model sources

Released model pages identify their supporting publication and immutable release. Tool pages identify the scientific method and upstream source where that evidence is part of the release. Report record-level corrections from the relevant artifact page.

Retention and deletion

Project trash defaults to 60 days and can be configured by an authorized organization administrator. Active records, backups, audit evidence, and account-deletion requests have different lifecycles; the privacy policy states each boundary without promising a blanket deletion window.

Subprocessors and regions

The current architecture uses Azure, Supabase, Google Gemini for server-routed Chat Lite, and Resend for invitation email. The primary application region is East US 2; other providers and recovery systems may process in other regions.

Read provider routing

Analysis and model privacy

Private scientific work runs on Ubi-managed workers unless a tool release panel identifies a third-party API. Ubi Biologics does not train models for other customers or the public on private content without explicit written consent. Provider-specific retention terms must be confirmed in the applicable agreement.

DPA, BAA, and regulated-data posture

The public Service does not claim a DPA, BAA, security certification, formal penetration-test cadence, or regulated-data boundary. These controls and any residency commitment must be confirmed in a written customer agreement before protected or regulated data is submitted.

Contact Ubi Biologics

Changes and research-use boundary

Model and tool pages expose release-specific versions and provenance where available. Ubi Biologics scientific outputs are for research use and must be interpreted within each method's stated assumptions, qualification status, and limitations. Deployment-verified application notes and artifact-specific change records are linked from the public changelog.

Open changelog

Trust page last updated: 1 August 2026.

UBI Biologics