Momentum — workflow intelligence
Home
Integrations
Pricing
// Security & trust

Radical transparency, enterprise controls

Momentum measures activity — never content. Here is exactly what our desktop agents collect, what they never touch, and the isolation and governance controls wrapped around every tenant.

Request security docs Read the privacy policy
SOC 2 TYPE IIISO 27001GDPR ALIGNEDDATA RESIDENCY
// 01 — Collection transparency

What we collect. What we never will.

Most monitoring tools bury this in a PDF. We put it on the front page: Momentum's agents capture activity signals and counts — never the content of anyone's work.

Collected by the agent
Active & idle time

The desktop agent measures when a machine is actively used versus idle, against your configured workday and office hours.

App & window usage

Which applications and window titles are in the foreground — including offline apps — so classification and Timeline stay accurate.

Input counts only

Aggregate mouse-click and keystroke COUNTS as an activity signal. The agent counts events; it never records what was typed.

Agent health telemetry

CPU and memory footprint of the agent itself, plus operational logs (Daemon, Installer, Task Scheduler, Upgrade) for supportability.

Never collected — no toggle exists
Keystroke content

No keylogging, ever. Momentum records that keys were pressed — never which keys, and never text, passwords, or messages.

Screenshots or screen recording

The current product has no screenshot or screen-recording capability. There is no toggle to switch it on.

Camera, microphone, or location

The agent never accesses webcams, microphones, GPS, or any other physical sensor on the machine.

File, email, or message content

No document contents, email bodies, chat transcripts, or clipboard data are read, indexed, or transmitted.

counts, not contentno screenshotsno keyloggingoffline apps still classified
// 02 — Tenant isolation

One organization, one hard-walled tenant

Momentum is multi-tenant from the schema up. Every machine, user, setting, and activity record carries a tenant ID, and every query is scoped to exactly one. There is no shared pool an over-broad query could leak from — cross-tenant access simply doesn't exist as a code path.

Every read and write scoped to a single tenant ID at the data layer
No customer account can ever see outside its own organization
Per-tenant settings: workday hours, thresholds, classification, approvals
Cross-tenant queries are denied at the data layer — and logged
momentum — tenant topologyLIVE
acme-corp
machine-01
machine-02
machine-03
Isolated store
globex-inc
machine-01
machine-02
Isolated store
initech-llc
machine-01
machine-02
machine-03
Isolated store
Cross-tenant query DENIED — tenant scope enforced
// 03 — Encryption & infrastructure

Defense in depth, from agent to dashboard

Activity data is protected in motion, at rest, and at the moment of access — with the operational visibility to prove it.

Encryption everywhere
Encryption everywhere

TLS 1.2+ for every agent-to-cloud and browser connection, AES-256 encryption at rest, and managed key rotation for stored activity data.

Tenant isolation
Tenant isolation

Every organization is a hard-isolated tenant. Queries, dashboards, and API responses are scoped to a single tenant ID — cross-tenant reads are impossible by design.

Single sign-on ready
Single sign-on ready

SSO and SCIM provisioning on eligible plans keep authentication with your identity provider — and make offboarding automatic.

Governed agent fleet
Governed agent fleet

Machines register as Pending and only report after an admin approves them. Rejected machines never stream a byte of activity data.

Operational observability
Operational observability

Info and Error logs across Daemon, Installer, Task Scheduler, and Upgrade components, plus per-machine CPU/memory resource tracking.

Data residency
Data residency

Choose the region where your tenant's data lives. Residency commitments are documented and available with our compliance pack.

momentum — machine registryLIVE
WIN-DEV-014
Windows 11
APPROVED
MBP-SALES-07
macOS 15
APPROVED
LNX-QA-003
Ubuntu 24.04
PENDING
WIN-TMP-091
Windows 10
REJECTED
REMOTE UNINSTALLDISABLE AGENT LOGIN
// 04 — Device governance

Every machine earns its place — and can lose it instantly

Momentum treats the agent fleet like the security surface it is. Machines go through an explicit approval lifecycle before a single event is recorded, and admins can revoke a device remotely the moment it's lost, retired, or offboarded.

New installs register as Pending — no data flows until an admin approves
Rejected machines are blocked from reporting permanently
Optional auto-approval for trusted, scripted rollouts
Remote uninstall removes the agent without touching the machine
Disable agent login instantly cuts off a device without uninstalling
// 05 — Audit & observability

If the agent does it, there's a log line for it

Security teams shouldn't have to trust a black box on 500 endpoints. Momentum surfaces Info and Error logs across every agent component — Daemon, Installer, Task Scheduler, Upgrade — alongside per-machine CPU and memory usage, so IT can verify exactly what the agent is doing and what it costs.

Info / Error severity filtering across the whole fleet
Component-level logs: Daemon, Installer, Task Scheduler, Upgrade
Per-machine resource usage — CPU and memory, over time
Registration, approval, and uninstall events all leave a trail
momentum — agent logsLIVE
09:14:02INFODAEMONHeartbeat OK — active window sampled
09:14:31INFOUPGRADEAgent 2.4.1 → 2.4.2 staged for restart
09:15:07ERRORTASK SCHEDULERSync job retry 1/3 — network timeout
09:15:12INFOTASK SCHEDULERSync job retry succeeded
09:16:44INFOINSTALLERMachine registration → Pending approval
Agent CPU usage0.4% avg
Agent memory footprint38 MB
// 06 — Compliance

Paperwork your security review actually needs

Certifications and commitments, ready to hand to procurement, your DPO, or a works council.

SOC 2 TYPE II
Audited controls, continuously

Independently audited against the Trust Services Criteria over an observation period — not a point-in-time snapshot. Report available under NDA.

ISO 27001
Certified ISMS

Our information-security management system is certified to ISO 27001, covering risk management, access control, and incident response.

GDPR ALIGNED
Processor by design

Momentum processes workforce data on your instructions as a processor. DPA, sub-processor list, and transfer mechanisms are ready to sign.

DATA RESIDENCY
Your region, your call

Pin your tenant's activity data to a supported region so residency requirements from your DPO or works council are met from day one.

// Responsible disclosure

Found something? Tell us first.

We run a responsible-disclosure program for security researchers. Report a vulnerability in the platform or the desktop agents and we'll acknowledge within two business days, keep you updated through the fix, and credit you if you'd like. Please avoid accessing data that isn't yours while testing.

Contact the security team →business@enrichme.ai
// Security FAQ

The questions your CISO will ask

Does Momentum capture screenshots or record screens?+

No. The current product has no screenshot or screen-recording capability at all — there is no hidden setting to enable it. Momentum's signal comes from active/idle time, app and window usage, and input counts.

Can admins read what employees type?+

No. The agent counts keystrokes and mouse clicks as an activity signal, but never records which keys were pressed. Keystroke content, passwords, and messages are never captured, transmitted, or stored.

How is one customer's data kept separate from another's?+

Every organization runs as an isolated tenant. All storage, queries, and API responses are scoped to a single tenant ID, so one tenant can never see another's data.

What happens when a laptop is lost or an employee leaves?+

Admins can remotely uninstall the agent or disable agent login for that machine immediately. Either action stops data collection from the device; disable-login preserves the install for reactivation.

Can any machine start reporting data as soon as the agent is installed?+

No. New machines register in a Pending state and report nothing until an Admin approves them. You can enable auto-approval for controlled, scripted rollouts — it's your call per tenant.

What compliance documentation can we get before buying?+

SOC 2 Type II report (under NDA), ISO 27001 certificate, our DPA with sub-processor list, data-residency options, and a security whitepaper describing the agent's exact collection behavior.

Security questions before you start?

Request our SOC 2 Type II report, ISO 27001 certificate, DPA, or the agent security whitepaper — we'll get you what you need.

Request security docs Start free trial