Awardly
Awardly Pursuit Lifecycle Platform
← Back to App
Trust & Security

Security & Trust

Last reviewed: June 2026

Built to align with NIST SP 800-171 / CMMC Level 2 control objectives. Awardly is designed against the safeguarding objectives that matter to government contractors and their primes.

Architected to keep controlled documents outside your CUI boundary. Documents you analyze are parsed on your own device and are never uploaded to our servers — only the extracted text needed for the analysis leaves your machine. Running the AI analysis itself inside your own environment is on our roadmap (see below).

In plain terms: encrypted in transit and at rest; MFA supported; per-organization data isolation; a tamper-evident, independently verifiable audit trail; and controlled-information screening. The honest status of what is in place today versus what is on our roadmap is below — nothing on this page is a claim of compliance or certification.

Controls in place today

These protections are live in the product now:

Controlled documents

When you analyze a document, it is parsed in your browser — only the extracted text needed for your analysis is processed, and the file itself never reaches our servers. Controlled markings detected on a document halt the analysis. Detection is best-effort and not guaranteed.

In place vs. roadmap

We keep this honest so you can make an informed decision.

In place today Now

Roadmap & honest status Roadmap

Standards

Built to align with NIST SP 800-171 / CMMC Level 2 control objectives. We map our controls to those objectives and design around them.

This is a statement of architectural alignment with those control objectives — not a claim of compliance or certification. Awardly is not FedRAMP-authorized, and independent assessment (penetration testing, SOC 2) is on our roadmap.

Security & Trust inquiries

Operated by: Aristrata LLC (Missouri)

Email: hello@awardly.app

See also: Privacy Policy & Terms