Skip to content

Platform

Your business data is yours. Our software is ours.

Those are different things, and conflating them is how technology relationships go wrong. TGL operates a layered model that keeps the line explicit.

Three layers

What belongs to whom.

The customer

Customer-Private Data

Business-specific information — customers, orders, documents, records — stays isolated within that customer's environment, subject to their agreement, permissions, and access controls.

  • Logical tenant isolation
  • Role-scoped access
  • Encryption in transit and at rest
  • Audit trail of access and change
TruGen Labs

TGL Proprietary Intelligence

TGL owns its software, reusable components, architectural patterns, platform improvements, and intellectual property. Customers license their customized environment; they do not license the platform itself.

  • Source code and architecture
  • Capability Library
  • Platform improvements
  • Operational tooling
Governed

Governed Cross-Domain Intelligence

Where legally and contractually authorized, appropriately governed information may contribute to generalized patterns and improvements — without exposing one customer's private information to another.

  • Explicit authorization required
  • Data provenance tracked
  • Generalized patterns, not records
  • Reviewable governance policy

Isolation

One customer's data never becomes another customer's data.

Environments are logically isolated. What is shared between deployments is TGL's software and architectural patterns — the capability library — not the records inside any customer's environment.

Where TGL learns something generalizable from operating many businesses, what carries forward is the pattern: that a certain workflow shape recurs, that a category of process benefits from a particular structure. Not the underlying records, and not one customer's information surfacing in another's system.

Each customer environment is isolated. Shared TGL platform capability sits beneath them; no customer environment reaches into another.
Customer A
Private
Customer B
Private
Customer C
Private
Shared TGL Platform & Capability Library
Software and patterns — never one customer's records reaching another

Practices

How this is enforced.

Controls, not assurances. Each of these is something a customer can ask us to demonstrate.

Tenant isolation

Each customer environment is logically separated, and access is scoped by identity at every layer.

Access controls

Permissions are enforced by role at the data layer, not only in the interface.

Encryption

Traffic is encrypted in transit; sensitive fields are encrypted at rest.

Data provenance

Where information came from and what it may be used for is tracked, not assumed.

Auditability

Access and change are recorded, with retention appropriate to the record type.

Operational hardening

Default-deny network policy, monitored authentication, and reviewed infrastructure change.

What we will not claim

No system is perfectly secure, and any vendor telling you otherwise is selling something. TGL commits to specific controls, to disclosing incidents that affect your data, and to answering questions about how your environment is actually configured — not to guarantees nobody can honor.

Ownership

What a customer receives.

The customer holds

  • Their business data
  • A license to operate their customized environment
  • The ability to export their data
  • Control over who on their team can reach what

TruGen Labs holds

  • Platform source code and architecture
  • The Capability Library and reusable components
  • Generalized improvements and patterns
  • Operational tooling and infrastructure

Specific terms are set by the agreement between TGL and each customer. This page describes the model; the agreement governs.

Questions about how your data would be handled?

Ask them before you sign anything. We would rather answer specifics than offer reassurance.