Folio

Trust & security

Every claim on this page, you can go check yourself.

How Folio protects your work and proves what’s yours — the database rules that enforce it, and the record you can verify independently. No jargon, no hand-waving.

Proof, not a promise

Folio’s Integrity Certificates aren’t a badge you take on faith — each one is backed by a cryptographic chain of the document’s real edit history, independently verifiable at a public /verify/[code] link. An instructor, an editor, a reader — anyone can check the proof themselves, without trusting Folio’s word for it.

Access enforced at the database, not just the interface

Access is enforced in Postgres itself with row-level security, not only in the interface. Even a bug in the application can’t hand your data to someone else, because the database refuses to return it.

We don’t mine your work

Your content is yours. Folio’s AI answers from the sources you give it; we do not sell your data, and we do not train models on your writing.

Your data, your control

Export all your data in a machine-readable format, or permanently delete your account yourself, anytime, from Settings → Account — no support ticket required. If you delete, your personal data and content are gone within 30 days, except where compliance requires retention. Full detail in our privacy policy.

Screened before it reaches your bibliography

Folio flags retracted papers and expressions of concern before they reach your bibliography, so a withdrawn study never quietly props up your argument.

Compliance posture

Folio is built to a GDPR-aligned standard, and a Data Processing Agreement is available on request. If you’re evaluating Folio for a team or lab, your export, deletion, and access rights are the same ones covered above — see our privacy policy for the full detail.

Have questions about how we handle your data?

Email us and we'll walk you through it — no sales pitch, just a straight answer.

hello@usefolio.co