Security  ·  Always on. Always secure.

Your data is
in safe hands.

Centralynk is self-hosted by design. Your brand data, scan results, and API keys never leave your infrastructure — we never see them.

Centralynk secure workspace
Built for Privacy · Open by Design

Centralynk is built on security principles that protect your data by architecture, not just by policy.

Self-Hosted

Your data lives on your own server. Not ours. Every scan, recommendation and API key stays in your infrastructure.

SELF-HOSTED
Open Source

Every line of security code is publicly auditable. MIT licensed. No black boxes, no hidden data collection.

MIT LICENSE
JWT Auth

Enterprise-grade authentication with 24-hour token expiry and rate limiting on all authentication endpoints.

JWT + RATE LIMITING
BYOK Security

Your API keys are stored encrypted and never returned in responses. Never logged, never shared, never seen by us.

BRING YOUR OWN KEY

Trusted data storage

Your server, your rules

Host on your own hardware or any cloud provider. Belgium, EU, US — you choose where your data lives.

No foundation model training

Your data is never used to train AI models. Your brand intelligence stays private to you.

No foundation model training

Your confidential data remains secure and private to you. Centralynk will not use your data to train or fine-tune any AI models.

Engine-grade security

Network isolation

Backend services run on an internal Docker network with no direct internet exposure. All external traffic routes through Cloudflare Tunnel.

DDoS protection

Cloudflare sits in front of every request, providing enterprise-grade DDoS protection and TLS 1.3 encryption included.

Org-level data isolation

Multi-tenant architecture ensures complete data separation between organisations. Your data is never accessible to other users.

Non-root containers

All services run as non-root users inside Docker containers. Database is not publicly accessible from the internet.

Full ownership and flexibility

Centralynk gives you complete control. Self-host on your own infrastructure, bring your own API keys, and audit every line of code. You own your data, your models, and your GEO intelligence. No vendor lock-in. No data sharing. No surprises. Fork it, run it, make it yours.