Security

Enterprise grade security and privacy

Trust is core to our mission at Augment. We are committed to the privacy and security of our customers’ data, processes, and knowledge.

You own and control your data

You own your inputs and outputs (where allowed by law)
You control how long your data is retained (Enterprise)
We explicitly ask all LLMs we use to exclude all of our data
Flow and access logs available in privileged AWS account
Strict access controls using role based permissions
Enterprise level authentication through SAML/SSO

Compliance

AES 256

VPC + NAT

AWS

MDM

24/7/365

SOC 2 Type II

GDPR

AES-256

Data encryption at rest (AES-256) and in transit between our customers and us, and between us and our service providers (TLS 1.2+).

The hard drives on all Augment-managed computers are encrypted at rest.

VPC + NAT

Augment is hosted behind private Virtual Private Clouds (VPCs) with NAT gateways that only allow web service API access.

AWS

Physical security of all our infrastructure is managed by Amazon AWS.

MDM

All computers issued by Augment to its personnel are secured through MDM (Mobile Device Management)

24/7/365

Our engineering team has an on-call rotation that has 24/7/365 coverage and is paged in case of any potential security incident.

SOC 2 Type II — Certified

Augment has successfully completed its SOC 2 Type II audit and received an unqualified opinion from Prescient Assurance LLC, an independent CPA firm.

This is the highest possible audit outcome and confirms that our controls were properly designed and operating effectively over the full observation period.

Audit details

  • The full SOC 2 Type II observation period has concludedAuditor: Prescient Assurance LLC

  • Observation period: August 26, 2025 – January 31, 2026

  • Trust services categories: Security, Availability, Confidentiality

  • Report issued: March 18, 2026

What this means for customers:

Augment’s systems and processes have been independently assessed over a multi-month period — not just a point-in-time review. Our controls are proven to work consistently over time and meet enterprise-grade security expectations.

Access to the report

The full SOC 2 Type II report is available via our Trust Center or can be shared directly under NDA.

GDPR

Augment is committed to protecting the privacy and data rights of individuals in the European Union and United Kingdom. Our data protection program is aligned with the requirements of the General Data Protection Regulation (GDPR) and the UK GDPR.

In accordance with Article 27 of the GDPR, we have appointed Euverify Ltd as our GDPR Representative for the EU and UK, effective July 13, 2026. Euverify maintains registered offices in London, UK and Cork, Ireland, providing EU and UK data subjects and supervisory authorities with a designated point of contact for data protection matters.

Verify our representative status
Submit a data subject request

We maintain data processing agreements (DPAs) with our customers and vendors, apply data minimization and security controls across our infrastructure, and continuously review our practices to align with evolving data protection requirements.

AES 256

VPC + NAT

AWS

MDM

24/7/365

SOC 2 Type II

GDPR

AES-256

Data encryption at rest (AES-256) and in transit between our customers and us, and between us and our service providers (TLS 1.2+).

The hard drives on all Augment-managed computers are encrypted at rest.

VPC + NAT

Data encryption at rest (AES-256) and in transit between our customers and us, and between us and our service providers (TLS 1.2+)

AWS

Data encryption at rest (AES-256) and in transit between our customers and us, and between us and our service providers (TLS 1.2+)

MDM

Data encryption at rest (AES-256) and in transit between our customers and us, and between us and our service providers (TLS 1.2+)

24/7/365

Data encryption at rest (AES-256) and in transit between our customers and us, and between us and our service providers (TLS 1.2+)

SOC 2 Type II — Certified

Augment has successfully completed its SOC 2 Type II audit and received an unqualified opinion from Prescient Assurance LLC, an independent CPA firm.

This is the highest possible audit outcome and confirms that our controls were properly designed and operating effectively over the full observation period.

Audit details

  • The full SOC 2 Type II observation period has concludedAuditor: Prescient Assurance LLC

  • Observation period: August 26, 2025 – January 31, 2026

  • Trust services categories: Security, Availability, Confidentiality

  • Report issued: March 18, 2026

What this means for customers:

Augment’s systems and processes have been independently assessed over a multi-month period — not just a point-in-time review. Our controls are proven to work consistently over time and meet enterprise-grade security expectations.

Access to the report

The full SOC 2 Type II report is available via our Trust Center or can be shared directly under NDA.

GDPR

Augment is committed to protecting the privacy and data rights of individuals in the European Union and United Kingdom. Our data protection program is aligned with the requirements of the General Data Protection Regulation (GDPR) and the UK GDPR.

In accordance with Article 27 of the GDPR, we have appointed Euverify Ltd as our GDPR Representative for the EU and UK, effective July 13, 2026. Euverify maintains registered offices in London, UK and Cork, Ireland, providing EU and UK data subjects and supervisory authorities with a designated point of contact for data protection matters.

Verify our representative status
Submit a data subject request

We maintain data processing agreements (DPAs) with our customers and vendors, apply data minimization and security controls across our infrastructure, and continuously review our practices to align with evolving data protection requirements.

Explore the Trust Center

Explore the
Trust Center

Our commitment to data privacy and security is embedded in every part of our business. Augment is SOC 2 Type II and SOC 1 Type I certified, GDPR compliant, and independently penetration tested. Visit our Trust Center, managed through Drata, to review our security posture and request access to our SOC 2 report and security documentation.

Explore the Trust Center

Our commitment to data privacy and security is embedded in every part of our business. Augment is SOC 2 Type II and SOC 1 Type I certified, GDPR compliant, and independently penetration tested. Visit our Trust Center, managed through Drata, to review our security posture and request access to our SOC 2 report and security documentation.

Explore the
Trust Center

Our commitment to data privacy and security is embedded in every part of our business. Augment is SOC 2 Type II and SOC 1 Type I certified, GDPR compliant, and independently penetration tested. Visit our Trust Center, managed through Drata, to review our security posture and request access to our SOC 2 report and security documentation.

Frequently asked questions

About Augie

Business impact & ROI

Implementation & integration

Data security & privacy

Is Augment SOC 2 Type II compliant?

Yes. Enterprise supply chain and logistics companies increasingly require SOC 2 Type II as a baseline for working with AI vendors. We get it. You're not just buying software – you're extending operational trust to us.

This attestation gives you an independent, third-party answer to a simple question: is Augment's security program purpose-built to handle our needs? The answer is yes. And now we're ready to help you redefine your supply chain and logistics operations with AI.

Is my data encrypted?

Yes. All data is encrypted both at rest and in transit using industry-standard protocols (AES-256 and TLS 1.2+), with strict access controls in place.

How does Augment control access to my data?

We use role-based access controls and enforce a "least access" principle; only necessary personnel can access sensitive data. All employees are required to use MFA and strong password policies.

How does Augment comply with privacy laws?

Augment complies with applicable privacy laws related to the collection, use, and processing of personal data. We maintain policies to meet legal requirements and provide assistance for compliance, including executing additional agreements if required.

What steps does Augment take to secure its infrastructure and protect my data?

Our infrastructure runs on AWS with private Virtual Private Clouds, AWS GuardDuty for threat detection, and secure log storage for auditing.

Augment maintains administrative, technical, and physical safeguards to protect the security, integrity, accessibility, and confidentiality of your data.

We are SOC 2 Type II certified, and our protocols are designed to prevent unauthorized access and mitigate risk.

How does Augment manage third-party vendors?

We only work with third-party vendors who meet SOC 2 compliance standards. All vendors are thoroughly reviewed to ensure they meet strict security requirements.

How does Augment manage code changes and security?

All code undergoes thorough reviews, unit testing, and security audits. We use automated tools to detect issues like exposed keys and ensure all packages are up to date and secure.

Frequently asked questions

About Augie

Business impact & ROI

Implementation & integration

Data security & privacy

How is Augie different from voice agents or email agents?

Voice and email agents handle one channel at a time. Augie is a full AI teammate that works across calls, emails, texts, portals, APIs, and enterprise systems — maintaining context across all of them. It doesn't just respond to messages; it executes end-to-end workflows like booking loads, collecting PODs, and updating your TMS. It's fully customizable, learns your SOPs, and delivers measurable ROI.

What can Augie do today?

Augie handles a wide range of operational tasks, including: automated spot quoting and rate confirmations, shipment planning in your TMS, appointment scheduling, track and trace, POD and document collection, AR collections to reduce DSO, carrier communications via email, voice, and text, carrier onboarding and compliance verification, carrier capacity planning and dispatch, shipper case management via email and CRM, agent/contractor helpdesk support, audit and claims support, and AP management.

And the list is growing — talk to us about your specific workflows.

What type of companies is Augie a good fit for?

Augie is ideal for freight brokerages, carriers (FTL and LTL), shippers, drayage companies, 3PLs, and distributors that want to increase efficiency, scale operations, and improve service. Augie integrates into your existing processes and systems without requiring specialized technical expertise.

Can I start with a few workflows, or do I need to use Augie for everything?

You choose which workflows Augie handles. Most customers start with a few high-impact tasks and expand from there as they see results.

Can I build custom workflows for Augie to execute?

Yes — and they work differently than what you've seen. Most AI workflow tools force a choice between rigid automation or nothing. Augie blends structured rules with intelligent reasoning: precision where you need it, flexibility for the exceptions that break traditional builders.

Beyond the standard workflows Augie runs out of the box, you can spin up your own custom workflows in plain English. Just set the trigger, write the SOP, and pick the tools you'd like to leverage — then leave the rest to Augie.

How can I align Augie to my brand?

You can rename Augie, and it adapts to your communication styles, brand voice, and operational ethos. However, everyone at your company needs to call it the same thing — one name per organization.

Does my team have to train Augie? How does Augie learn our SOPs?

Augie can quickly adapt to your workflows. It ingests your SOP Word document and converts it into structured workflow steps, eliminating manual coding or configuration.

Augie learns continuously and refines its processes to ensure all communications adhere to company standards. If it encounters an unfamiliar situation, it escalates or asks for clarification.

What is Knowledge Hub?

Knowledge Hub is the shared brain for your logistics operation that unifies structured data in your TMS, unstructured context in your emails and docs, and tribal knowledge in your operators' heads. It's accessible to your team through Slack, Teams, GChat, the Augment portal, and more.

Purpose-built for supply chain, it understands the relationships between loads, carriers, lanes, and facilities, enforces role-based permissions, and actively captures knowledge from senior operators when something isn't yet documented. Unlike generic AI chatbots or horizontal knowledge tools, it's built from the ground up on freight ontology — giving your team load-level insights, providing executive leadership with performance visibility, and serving as a valuable tool to onboard your new operators.

Does my team need to learn new tools to work with Augie?

No. Augie meets your team where they work — Slack, Microsoft Teams, Google Chat, email, and text. No new systems to learn.

What languages can Augie understand and communicate with?

Augie currently communicates in English and Spanish. We are continually expanding into additional language coverage based on customer demand.

Meet Augie, the AI teammate built for supply chain.

Augie handles the daily grind so your operators can focus on service and scale.

Meet Augie, the AI teammate built for supply chain.

Augie handles the daily grind so your operators can focus on service and scale.