Loading...
IngestX by Immenzo
IngestX is an industry-neutral, AI-assisted document automation platform that helps businesses turn operational documents into structured, review-ready data for their existing systems.
The platform can process documents such as purchase orders, RFQs, invoices, delivery notes, work orders, certificates, forms, specifications, spreadsheets, and other business documents across industries.
Security, privacy, responsible AI use, and customer control are central to how we design and operate IngestX.
This Trust Center explains how we approach infrastructure, data handling, third-party service providers, AI processing, security, and customer oversight.
IngestX's core production infrastructure is hosted in Indonesia. Certain authorized subprocessors may process limited customer data in other jurisdictions where necessary to provide the Services.
We use cloud infrastructure and service providers selected to support the security, availability, and operation of the platform.
However, hosting location and processing location are not always the same.
Unless expressly agreed otherwise:
If an Order Form, Statement of Work, or service specification expressly includes an Indonesia-only processing or data-residency commitment, the applicable customer data will be handled according to that commitment.
Customers with specific residency, hosting, network, or deployment requirements should confirm those requirements before production deployment.
Depending on the customer's workflow, IngestX may process:
The specific information processed depends on the documents and workflows selected by the customer.
Our practices are designed around several core principles:
Where IngestX processes Personal Data on behalf of a business customer, the customer generally determines the purpose of that processing and IngestX processes the data according to the customer's documented instructions and applicable agreement.
IngestX uses artificial-intelligence technologies to support document classification, extraction, validation, exception detection, and preparation of structured outputs.
We may use third-party AI and technology providers as subprocessors where they are necessary to provide the Services.
Where a provider processes Customer Content on our behalf, we seek to apply appropriate contractual and operational safeguards.
Unless separately agreed in writing:
Information about material subprocessors and processing locations is available through our Subprocessor information or during customer security and legal review.
IngestX maintains technical and organizational measures designed to reduce the risk of unauthorized access, disclosure, alteration, loss, or misuse of customer information.
Depending on the relevant system and deployment, these measures may include:
No information system can be guaranteed to be completely secure. Specific contractual security commitments are governed by the applicable customer agreement.
IngestX is designed to assist human operators rather than replace accountability.
AI-generated or extracted information may contain errors or omissions.
Our workflows are therefore designed to support:
Customers are informed when AI is used to process documents and prepare structured information.
Extracted fields, validation results, and exceptions can be presented for human review before downstream use.
Customers remain responsible for determining when information is approved, submitted, exported, or relied upon.
AI outputs may be combined with validation rules, reference data, workflow controls, and human review to identify potential inconsistencies.
Customer information is processed according to the purposes described in the applicable agreement and Privacy Policy.
IngestX maintains responsibility for the design and operation of its platform and for the selection and management of service providers used to deliver the Services.
IngestX helps extract, structure, validate, compare, and transfer information from business documents.
Outputs may contain errors or omissions.
Customers remain responsible for reviewing information before relying on it for operational, safety, regulatory, technical, financial, or commercial purposes.
IngestX does not provide legal, regulatory, customs, safety, engineering, or other professional advice and does not replace qualified personnel or responsible operators.
For workflows involving critical information, customers should maintain appropriate human review and approval before information is submitted, relied upon, or transferred into downstream systems.
Customers determine how IngestX fits into their operational workflows.
Depending on the selected configuration, customers may control or define:
Customers with specific security, privacy, residency, regulated-workflow, or integration requirements should discuss those requirements with Immenzo before production deployment.
PT Immenzo Jaya International is established in Indonesia.
Our privacy and security practices are designed to support our obligations under applicable Indonesian data-protection and electronic-system requirements and the contractual requirements applicable to our customers.
IngestX is not currently certified to ISO 27001, ISO 42001, or SOC 2.
We continue to develop our security, privacy, governance, and assurance practices as customer and regulatory requirements evolve.
The use of cloud infrastructure or providers that maintain their own certifications does not mean that IngestX itself holds those certifications.
Customer-specific compliance requirements should be addressed during security review and documented in the applicable agreement where necessary.
We support reasonable security and privacy reviews for prospective and existing business customers.
Depending on the engagement, we can discuss:
Contractual commitments regarding security, residency, retention, availability, or processing locations must be expressly stated in the applicable customer agreement.
If you believe you have discovered a security vulnerability or have concerns regarding the handling of data by IngestX, please contact:
Security: [email protected] Privacy / Data Protection: [email protected]
We review reported concerns and investigate them in accordance with our internal security and privacy procedures.
This Trust Center is provided for transparency and informational purposes.
It does not create contractual rights, warranties, service levels, data-residency commitments, certifications, or legal obligations beyond those expressly provided by applicable law or set out in an executed customer agreement.
Nothing on this page should be interpreted as a guarantee that security incidents, processing errors, service interruptions, or other adverse events will never occur.
If there is a conflict between this Trust Center and an executed customer agreement, the executed customer agreement governs to the extent of that conflict.
Last updated: August 2026