Trust & security
Every claim on this page, you can go check yourself.
How Folio protects your work and proves what’s yours — the database rules that enforce it, and the record you can verify independently. No jargon, no hand-waving.
Proof, not a promise
Folio’s Integrity Certificates aren’t a badge you take on faith — each one is backed by a cryptographic chain of the document’s real edit history, independently verifiable at a public /verify/[code] link. An instructor, an editor, a reader — anyone can check the proof themselves, without trusting Folio’s word for it.
Access enforced at the database, not just the interface
Access is enforced in Postgres itself with row-level security, not only in the interface. Even a bug in the application can’t hand your data to someone else, because the database refuses to return it.
We don’t mine your work
Your content is yours. Folio’s AI answers from the sources you give it; we do not sell your data, and we do not train models on your writing.
Your data, your control
Export all your data in a machine-readable format, or permanently delete your account yourself, anytime, from Settings → Account — no support ticket required. If you delete, your personal data and content are gone within 30 days, except where compliance requires retention. Full detail in our privacy policy.
Screened before it reaches your bibliography
Folio flags retracted papers and expressions of concern before they reach your bibliography, so a withdrawn study never quietly props up your argument.
Compliance posture
Folio is built to a GDPR-aligned standard, and a Data Processing Agreement is available on request. If you’re evaluating Folio for a team or lab, your export, deletion, and access rights are the same ones covered above — see our privacy policy for the full detail.
Have questions about how we handle your data?
Email us and we'll walk you through it — no sales pitch, just a straight answer.
hello@usefolio.co