Cellara

Security

Where your data lives

Written plainly, and limited to what is actually true today. Cellara is in private beta; we would rather describe the real architecture than list certifications we do not have.

Hosting

Cellara runs on Google Cloud Platform in the United States. Application servers, the database and static assets are all hosted there. Knowledge Nets Inc. operates the service; we do not resell or white-label someone else's product.

In transit

All traffic between your browser or device and our servers is encrypted with TLS. The site and the application are served over HTTPS only.

At rest

Your graph is stored in a CouchDB database on our servers, on Google Cloud's encrypted storage. A copy also lives locally in your browser's storage — that local copy is what makes reads instant and offline use possible. On a shared computer, signing out and clearing site data removes it.

Account isolation

Every account gets its own database rather than a shared table with a tenant column. Access is enforced at the database level, so one account cannot read another's data even if application code were to ask it to. Cells you share are copied into the recipient's database deliberately, by a share operation you perform.

Search and embeddings

Full-text search runs locally against the copy of the graph in your browser. Semantic search uses an embedding model that also runs on your device, and the resulting vectors are stored locally. The contents of your notes are not sent anywhere to be indexed for search.

Agents and third-party models

When you ask a Cellara agent to do something, the relevant material from your graph is sent to a third-party large language model provider to produce the response. If that matters for a particular piece of information, do not put it in an agent's path. We do not use your content to train models, and we do not grant model providers rights to do so.

Email

Transactional email — invitations, notifications, support replies — is sent through Mailgun. Our own mail is on Google Workspace.

Backups and deletion

Databases are backed up regularly. Deleting a cell inside Cellara buries it rather than destroying it, so it can be restored; ask us and we will hard-delete anything you need gone. Deleting an account removes its database.

What we do not claim

We are not SOC 2 certified, we are not HIPAA-eligible, and we do not offer end-to-end encryption where we would be unable to read your data — our servers process it in order to sync and share it. If your use case requires any of those, Cellara is not the right tool for it yet, and we would rather tell you now.

Reporting a problem

Email support@cellara.com with "security" in the subject line, or use the contact form and pick "A security report". We will acknowledge quickly, keep you updated, and we will not take action against anyone who reports a genuine issue in good faith.

Last updated 24 July 2026.