ToolJet Security

Trust and Security

Protect your data with encryption, access controls, and security practices across the application lifecycle. Choose where your apps and AI run, with deployment options that fit your requirements.

Visit the ToolJet Trust Center

Built for your security review

Trust you can verify.

Review SOC 2 audit information, ISO 27001, and GDPR compliance resources in our Trust Center.

Explore our controls and policies

Security across your application lifecycle

Protect your data.
Control who can access it.

Encryption, access controls, and auditability help protect the people, applications, and business data in your workspace.

Encryption in transit

ToolJet uses TLS to encrypt data transmitted between users and its servers, protecting information as it moves.

Encryption at rest

Sensitive data stored on ToolJet's servers is encrypted at rest. For Self-hosted deployments, configure storage and infrastructure protections for your environment.

AES-256-GCM credential encryption

Data source credentials are encrypted using AES-256-GCM and are not shared with AI servers or model providers. On Self-hosted deployments, they remain inside your deployment.

Credential security details

Audit trails and monitoring

Use the audit logging and observability controls available for your plan to review activity and support security monitoring. Set appropriate access and retention for logs.

Retention and deletion

Our privacy policy explains data collection, use, retention, and deletion requests, including applicable legal retention requirements. Contact us to request deletion of your account or personal information.

Read the privacy policy

Security is an ongoing practice

Review our security controls

Prepare, monitor,
and respond.

Incident response

We monitor our systems for suspicious activity and security incidents. Our response plan covers containment, communication with affected parties, and remediation to help prevent recurrence.

Secure development practices

Our Trust Center documents change-management and application security controls. For your own apps, review changes before release, separate development from production, and keep deployment dependencies up to date.

Shared responsibility

Your part in a secure deployment

Protect your accounts and maintain the infrastructure you operate.

  • Use strong, unique passwords and two-factor authentication.
  • Review permissions for users and connected data sources.
  • Keep devices, applications, and Self-hosted infrastructure updated.

AI on your terms

Choose where your AI runs.

Control the deployment, the gateway, and the model endpoint to meet your data requirements.

Self-host ToolJet.
Use our AI gateway.

Run ToolJet on your infrastructure and send AI requests outbound to ToolJet's hosted gateway.

  • Your deployment initiates the connection
  • Key-authenticated requests
  • No gateway-initiated inbound access
Enterprise add-onsDiscuss deployment

Keep AI on
your infrastructure.

Deploy the AI gateway on-premises and connect a supported model endpoint inside your network.

  • On-premises AI gateway add-on
  • Bring your own keys (BYOK) add-on
  • Local model endpoint for internal inference

On-premises gateway hosting and BYOK are Self-hosted Enterprise add-ons. BYOK with an external provider still sends requests to that provider; builder BYOK is not available on ToolJet Cloud.

Connection direction

Outbound by design.

The gateway cannot initiate a connection into your deployment. Replies return over the connection your deployment opens.

Outbound-only connectivity controls network access, not request contents. AI requests can include context from the data sources you make available. Review AI data usage.

Your data is not training data

ToolJet does not use customer data to train or improve AI models, and does not permit its third-party LLM providers to do so.

AI data usage policy

Control the context AI receives

Requests can include prompts, app context, schemas, and data read through connected credentials. Restrict data-source permissions; discovery is not limited to schemas. Treat logs containing prompts or responses as sensitive.

Example deployment isolation

Deployment guide

Separate environments.
Controlled releases.

Enterprise plans include multiple deployments. Run development, staging, and production as separate ToolJet instances, with AI enabled or disabled for each deployment.

  1. AI enabled

    Development

    Build with AI using test or sanitized data and limited data-source permissions.

  2. AI disabled

    Staging

    Pull app definitions with GitSync. Configure staging credentials and test before release.

  3. AI disabled

    Production

    Promote reviewed apps with production-only credentials and controlled access.

Promote apps with GitSync. Configure secrets separately in each deployment.

Self-hosted Enterprise add-on

Plan an air-gapped deployment

No internet.
Still ToolJet.

With the air-gapped deployment add-on, ToolJet runs without internet access—including its licensing system.

Platform operation
Offline
License validation
Offline
AI, if enabled
Local gateway + model

Keep required data sources, identity services, and Git repositories within your isolated network.

Running with restricted outbound access instead?

Without the air-gapped add-on, allowlisting can be limited to ToolJet's AI gateway for ToolJet-hosted services, with optional outbound features disabled. Customer-selected external integrations, model endpoints, Git hosts, or identity providers may need additional access.

Environment variables let you disable telemetry, update checks, and other optional outbound features. Review the configuration reference for your release.

Questions, answered

Security details,
without the guesswork.

Explore the Trust Center
How does ToolJet protect data in transit and at rest?

ToolJet uses TLS for data transmitted between users and its servers and encrypts sensitive data stored on its servers at rest. Data source credentials are encrypted using AES-256-GCM. Self-hosted customers configure the network, storage, and access protections for their own infrastructure.

How can we control access and review activity?

Use role-based permissions to limit access to apps and resources. Audit logging and observability controls available for your plan support security monitoring. Review permissions regularly and configure who can access logs and how long they are retained.

How can I request deletion of my account or personal information?

Contact [email protected] to request deletion of your account or personal information. Our privacy policy explains the request process, retention practices, and applicable legal requirements.

Can ToolJet AI run entirely on our infrastructure?

Yes. Self-hosted Enterprise offers on-premises AI gateway and BYOK add-ons. Use the gateway with a supported model endpoint hosted inside your infrastructure to keep AI processing internal. BYOK with an external model provider still sends requests to that provider.

Can ToolJet's hosted AI gateway initiate a connection to our deployment?

No. Your Self-hosted deployment initiates the outbound connection and authenticates with a key. The hosted gateway cannot initiate an inbound connection to your deployment. Responses return over the deployment-initiated connection; AI requests can still carry the context needed to complete the task.

Can we enable AI in development and disable it in production?

Yes. Enterprise plans include multiple deployments. Run separate development, staging, and production instances, enable AI only in development, and promote app definitions through GitSync. Configure each instance's data sources and secrets separately. Apps that call external AI services at runtime still need those services, or must have those features removed.

Can ToolJet run without internet access, including licensing?

Yes, when your Self-hosted Enterprise plan includes the air-gapped deployment add-on. ToolJet supports offline operation and offline licensing in that configuration. Keep required services inside the isolated network, and use a local gateway and supported local model endpoint if AI is enabled.

Where can our security team review ToolJet's controls and compliance information?

Visit the ToolJet Trust Center for compliance information, security controls, AI security posture, and policy resources. Contact our team to review the deployment architecture and Enterprise add-ons required by your organization.

Make security part of your deployment plan.

Review your requirements and Enterprise add-ons with our team.