Skip to content
SOC 2 Type II in progress · ISO 27001 in progress

Everything the enterprise asks for. Built in.

Not bolted on later. Multi-tenant data, security sign-off, full traceability and code you own — the things procurement and security teams check for are part of the platform, not a roadmap promise.

Tenant-isolatedAudit logs on by defaultSelf-host readyExportable codebase
app.dual7.ai/acme/enterprise
Tenant isolation
acme_prodisolated
acme_stagingisolated
acme_devisolated
Audit trail
Schema migration approved
sarah@acme.co
RBAC policy changed
admin@acme.co
Production deploy signed off
cto@acme.co
Code ownership

You own the code. Front to back.

Most AI builders are great at the demo, then trap the backend on their platform. Dual7 ships you the real thing — a repository you can read, audit, extend and run without us.

your-app /
app/        # Next.js (React) front end
api/        # Node services & routes
db/
  schema.sql        # Postgres, tenant-isolated
  migrations/       # versioned, reviewable
infra/      # deploy to your cloud

The whole repository

React front end, Node services, Postgres schema and migrations — front to back, nothing withheld.

No proprietary runtime

Nothing locks the app to Dual7. It's standard code your team already knows how to run.

Run it anywhere

Your cloud, your VPC, on-prem — deploy it on the infrastructure you already trust.

No lock-in, ever

Leave and the software keeps running. Ownership is the default, not an exit clause.

Security & governance

The controls reviewers look for. On by default.

Governed Mode is built for production — the safeguards are part of the platform, not a checklist you bolt on afterward.

Multi-tenant by default

Schema-per-tenant Postgres with row-level security and RBAC built in — isolation is the starting point, not a later migration.

schema-per-tenantrow-level securityRBAC
app.dual7.ai/acme/admin/tenants
tenant_acme_prod
482 users
RLS enforced
tenant_acme_staging
34 users
RLS enforced
tenant_acme_dev
12 users
RLS enforced

Security & sign-off

Every change is security-audited at the Build stage; a human approves before it ships.

Full traceability

Every line traces to a requirement and a sign-off. Auditors get a graph, not a guess.

Audit logs on by default

Who changed what, when, and who approved it — recorded without extra setup.

app.dual7.ai/acme/admin/audit
Schema migration approved2m ago
sarah@acme.co
RBAC role updated1h ago
admin@acme.co
Production deploy signed off4h ago
cto@acme.co

Proper secret hygiene

Typed integrations with credentials handled correctly — never hard-coded into the app.

app.dual7.ai/acme/admin/integrations
SENDGRID_API_KEY
environment-scoped
STRIPE_SECRET_KEY
environment-scoped
OPENAI_API_KEY
environment-scoped

Pass procurement on day one

The controls security teams ask for are on by default — so reviews move forward instead of stalling.

SOC 2 in progresstenant-isolateddata exportself-host ready
app.dual7.ai/acme/security
Procurement checklist
SOC 2 Type IIIn progress
ISO 27001In progress
Tenant isolationImplemented
Audit logsOn by default
Connected to your world

Your tools, already wired in.

Typed integrations with proper secret hygiene — so what you build works in your stack, not just in a demo.

+
Proof, not promises

A 500-user enterprise moved off Salesforce onto Dual7 in 45 days — live in production today, on code they own.

45 days
Full migration
500+
Users in production
0
Rebuilds
100%
Code owned and exportable
At a certain scale, a generic CRM stops being a tool and becomes a tax. Owning the code changed the economics for us.
Kanan.co

Build fast. Own what you ship.

Start in Vibe Mode. Certify what goes to production. Keep the same project and codebase.

No credit card · Own your code · Talk to us about enterprise rollout