### Documentation

Get started

- [Surfaice documentation](/docs/ai)

- [What is Surfaice?](/docs/concepts/what-is-surfaice/ai)

- [Quickstart](/docs/quickstart/ai)

- [Start by role](/docs/guides/start-by-role/ai)

- [Sign in and SSO](/docs/guides/sign-in/ai)

Guides

- [Workspaces](/docs/guides/workspaces/ai)

- [Connectors](/docs/guides/connectors/ai)

- [Chat with Hugo](/docs/guides/chat-with-hugo/ai)

- [Skills](/docs/guides/skills/ai)

- [Working with Hugo](/docs/guides/working-with-hugo/ai)

- [Punch Walk Guide](/docs/guides/punch-walk/ai)

- [Lease abstraction](/docs/guides/lease-abstraction/ai)

Use cases

- [Use cases overview](/docs/use-cases/overview/ai)

- [Teams & personas](/docs/use-cases/by-team/ai)

- [Lease administration](/docs/use-cases/lease-administration/ai)

- [CAM reconciliation](/docs/use-cases/cam-reconciliation/ai)

- [Store development](/docs/use-cases/store-development/ai)

- [Construction & closeout](/docs/use-cases/construction-and-closeout/ai)

- [Portfolio & renewals](/docs/use-cases/portfolio-and-renewals/ai)

- [Operations & facilities](/docs/use-cases/operations/ai)

Skills library

- [Skills library](/docs/skills/ai)

- [Lease & portfolio skills](/docs/skills/lease-and-portfolio/ai)

- [Store development skills](/docs/skills/store-development/ai)

- [Estimating & bid skills](/docs/skills/estimating-and-bids/ai)

- [Reporting & briefing skills](/docs/skills/reporting/ai)

- [Apps & automations](/docs/skills/apps-and-automations/ai)

- [Workspace admin skills](/docs/skills/workspace-admin/ai)

Concepts & trust

- [Permissions](/docs/concepts/permissions/ai)

- [Data handling](/docs/concepts/data-handling/ai)

- [Agent limitations](/docs/concepts/hugo-limitations/ai)

- [Trust FAQ](/docs/concepts/trust-faq/ai)

- [Audit trail](/docs/concepts/audit-trail/ai)

Help

- [FAQ](/docs/faq/ai)

- [Release notes](/docs/release-notes/ai)

- [Security overview](/docs/security/ai)

- [Support](/docs/support/ai)

- [Status](https://status.surfaice.pro)

- [Security](/security/ai)

- [Open app](https://agent.surfaice.pro)

Get started

- [Surfaice documentation](/docs/ai)

- [What is Surfaice?](/docs/concepts/what-is-surfaice/ai)

- [Quickstart](/docs/quickstart/ai)

- [Start by role](/docs/guides/start-by-role/ai)

- [Sign in and SSO](/docs/guides/sign-in/ai)

Guides

- [Workspaces](/docs/guides/workspaces/ai)

- [Connectors](/docs/guides/connectors/ai)

- [Chat with Hugo](/docs/guides/chat-with-hugo/ai)

- [Skills](/docs/guides/skills/ai)

- [Working with Hugo](/docs/guides/working-with-hugo/ai)

- [Punch Walk Guide](/docs/guides/punch-walk/ai)

- [Lease abstraction](/docs/guides/lease-abstraction/ai)

Use cases

- [Use cases overview](/docs/use-cases/overview/ai)

- [Teams & personas](/docs/use-cases/by-team/ai)

- [Lease administration](/docs/use-cases/lease-administration/ai)

- [CAM reconciliation](/docs/use-cases/cam-reconciliation/ai)

- [Store development](/docs/use-cases/store-development/ai)

- [Construction & closeout](/docs/use-cases/construction-and-closeout/ai)

- [Portfolio & renewals](/docs/use-cases/portfolio-and-renewals/ai)

- [Operations & facilities](/docs/use-cases/operations/ai)

Skills library

- [Skills library](/docs/skills/ai)

- [Lease & portfolio skills](/docs/skills/lease-and-portfolio/ai)

- [Store development skills](/docs/skills/store-development/ai)

- [Estimating & bid skills](/docs/skills/estimating-and-bids/ai)

- [Reporting & briefing skills](/docs/skills/reporting/ai)

- [Apps & automations](/docs/skills/apps-and-automations/ai)

- [Workspace admin skills](/docs/skills/workspace-admin/ai)

Concepts & trust

- [Permissions](/docs/concepts/permissions/ai)

- [Data handling](/docs/concepts/data-handling/ai)

- [Agent limitations](/docs/concepts/hugo-limitations/ai)

- [Trust FAQ](/docs/concepts/trust-faq/ai)

- [Audit trail](/docs/concepts/audit-trail/ai)

Help

- [FAQ](/docs/faq/ai)

- [Release notes](/docs/release-notes/ai)

- [Security overview](/docs/security/ai)

- [Support](/docs/support/ai)

- [Status](https://status.surfaice.pro)

- [Security](/security/ai)

- [Open app](https://agent.surfaice.pro)

# Trust FAQ

Security, privacy, and audit questions IT and compliance teams ask about Hugo.

Answers below describe Surfaice product behavior for enterprise reviewers.

**Quick glossary:** **Hugo** is Surfaice’s in-app AI agent. **Lucernex** is a common lease-administration system of record. **CAM** means common area maintenance (landlord charges tenants reconcile against the lease). For the live compliance summary and NDA document package, use [surfaice.pro/security](/security/ai).

If you are new to the product, read [What is Surfaice?](/docs/concepts/what-is-surfaice/ai) first.

### Can Hugo send email on my behalf without asking?

No. Hugo drafts email and summaries; sending through your connected mailbox requires your explicit action in the product and respects your mailbox permissions. There is no tenant-wide send capability.

### Does Surfaice train on our leases, emails, or documents?

No. Customer content is not used to train Surfaice models or vendor models under our commercial agreements. See [Data handling](/docs/concepts/data-handling/ai).

### Can Hugo access data I cannot open in Lucernex or SharePoint?

No. Surfaice inherits your existing entitlements. If you cannot open a record outside Surfaice, Hugo should not surface it to you. See [Permissions](/docs/concepts/permissions/ai).

### Can we read the CEO's mailbox tenant-wide?

No. Mailbox connectors are per user, granted by that user, and gated by Surfaice role. Admins can disable email connectors for roles that should not use them.

### What is logged in the audit trail?

Agent runs record who initiated a request, which tools and connectors were used, and what artifacts were produced. See [Audit trail](/docs/concepts/audit-trail/ai).

### Where is data stored?

Each customer environment is isolated on Google Cloud in US regions. Surfaice does not mirror your full DMS or mailbox by default. See [Data handling](/docs/concepts/data-handling/ai).

### What happens if we disconnect or offboard?

Connector access stops immediately. Systems of record were never replaced, so there is nothing to unwind in Lucernex or SharePoint. Deletion of limited persisted Surfaice data follows your agreement.

### Can we block HR, legal, or sensitive email topics?

Yes. Instance-wide exclusion lists by keyword, sender, domain, and folder apply across email-touching skills.

### Are you SOC 2 certified?

SOC 2 Type I is in progress via Vanta, expected Q3/Q4 2026. See [surfaice.pro/security](/security/ai) for current status.

### Who do we contact for security questionnaires?

Email [security@surfaice.pro](mailto:security@surfaice.pro) for the Security Guide, architecture diagram, and AI governance policy under NDA.

### What if Hugo gives wrong lease or CAM numbers?

Treat outputs as drafts. Your team verifies citations before updating systems of record. Report recurring accuracy issues to your Surfaice admin, see [Agent limitations](/docs/concepts/hugo-limitations/ai).

### Can users export chat history?

Workspace policy and role determine what can be saved or exported. Sensitive exports should follow your company's data classification rules.

## Related

- [Security overview](/docs/security/ai)

- [Permissions](/docs/concepts/permissions/ai)

- [Data handling](/docs/concepts/data-handling/ai)

- [FAQ](/docs/faq/ai)

- [Agent limitations Previous](/docs/concepts/hugo-limitations/ai)

- [Audit trail Next](/docs/concepts/audit-trail/ai)