> ## Documentation Index
> Fetch the complete documentation index at: https://docs.anygen.io/llms.txt
> Use this file to discover all available pages before exploring further.

# AnyGen Security Whitepaper

<Tabs>
  <Tab title="English">
    ## Foreword

    The AnyGen platform provides powerful AI agent services with high scalability and availability, including but not limited to intelligent research and analysis, automated generation of content such as documents, spreadsheets, or presentations, and end-to-end execution of complex tasks with cross-platform data integration capabilities. AnyGen applies industry-leading management practices and technical measures to ensure the security of products and user data throughout the lifecycle. AnyGen's design, development, and operations fully incorporate compliance and privacy requirements to ensure the product meets all applicable laws and principles regarding cybersecurity, personal privacy, and data protection.

    ## 1. Security Team and Its Responsibilities

    Similar to traditional SaaS security models, AnyGen defines several distinct areas of responsibility for security management.

    * **Security Management** \*\* and Compliance\*\*: Responsible for communicating enterprise-level security and compliance standards to AnyGen development teams. This function establishes secure development practices to ensure AnyGen's data storage model aligns with enterprise data processing standards.
    * **Business and Product Security**: Focuses on access control and prevention of unauthorized privilege escalation within AnyGen's complex business logic.
    * **Data Security**: Ensures the confidentiality and integrity of AnyGen's data.
    * **Incident Response and** **Disaster** **Recovery**: Handles runtime anomalies and emergency security incidents.

    ## 2. Personnel Security

    AnyGen's personnel security management is based on the company's unified policies. Because the system involves sensitive model data, business configurations, and sandbox management, all R\&D, operations, and business support personnel are subject to strict lifecycle management. This ensures that code quality and system stability are not undermined by malice or negligence.

    * **Onboarding, Transfer** **,** \*\* and Offboarding Control\*\*: All new hires and internal transfers must undergo standardized background checks and approval processes. Upon resignation or role changes, permissions are revoked systematically and promptly to eliminate orphaned accounts.
    * **Confidentiality and Compliance Agreements:** All employees must sign rigorous non-disclosure agreements. When handling system troubleshooting or data analysis reported by users, unauthorized access to user business data is strictly prohibited; all activities must comply with strict data masking and query control protocols.
    * **Security Training and Awareness**: The company organizes training programs regarding employees' professional knowledge and skills and information security awareness, including:
      * Organize information security-related training programs to enhance employees' information security skills, at least once a year;
      * Hold information security activities periodically to publicize information security awareness, at least once a year;
      * Communicate security awareness to employees in multiple ways, such as making publicity materials for security awareness and conveying them to employees through the mail, posters, etc.
    * **Endpoint and Office Environment Security**: AnyGen has developed a sound security management and control strategy for terminal equipments of employees and deployed it to all equipments by default. Employees cannot delete or modify the security configuration by themselves.

    Antivirus software is installed on all computers of AnyGen's employees, and the back-end security configuration prevents employees from switching off, uninstalling, or modifying the configuration of the antivirus software. The antivirus software is capable of updating the virus database in real time, and periodically performing full-disk virus scanning of employees' terminal equipments.

    AnyGen exercises full-disk encryption over employees' terminal equipment disks to protect data and file security. Upon resignation, employees need to return their terminal equipment, and the IT department will erase the information on employees' equipment by erasing the hard disks.

    ## 3. Network Security

    * **Network** **Access** **Control**: AnyGen uses access control lists (ACLs) for network isolation. Different network areas such as guest networks, office networks, development test networks, and production networks are divided internally. All employees who are outside AnyGen's network borders need to access AnyGen's internal resources through a VPN connection. AnyGen's internal audit department will audit access logs, etc., find and trace non-compliant operation records, and impose corresponding penalties.

    AnyGen has strict employee access control policies in place to limit access to internal resources. Employees need identity-authentication to access internal resources. After the identity is confirmed, employees only have the least privilege by default. The request of new permissions needs to be approved and recorded by the relevant responsible personnel. Permissions have a validity period, and the system will automatically revoke the permissions after the validity period expires. Employees operate online services through the bastion host, and all operation logs are kept for at least 180 days and audited by the internal audit department.

    * **Network Firewall**: AnyGen uses a network firewall to intercept common network security vulnerability attacks in AnyGen products, and only authorized security and compliance engineers can uniformly configure the protection rules of the network firewall. AnyGen has set up a combination of automatic and manual methods to update the network firewall configuration.
    * **DDoS and Network Attack Defense**: AnyGen service provides customers with network access through CDN and dynamic acceleration, and accesses back-end services through company load balancing; AnyGen has deployed industry-leading anti-DDoS services to defend against traffic-based and connection-based attacks.
    * **Network Transmission Encryption**: AnyGen uses HTTPS and WSS for encrypted transmission in both the internal and external networks, ensuring the security of the transmission process and preventing eavesdropping and tampering.

    ## 4. Server and Runtime Environment Security

    * **Server Access Control**: AnyGen regularly scans server assets, closes unnecessary ports and services in a timely manner, minimizes external permissions, filters unsafe services, and reduces security risks. Security personnel conduct weak password detection on a regular basis, and urge server operation personnel to increase the complexity of passwords to prevent brute force cracking. All access to the server must be operated and audited through the bastion host. AnyGen uses the whitelist to control the access source of business services to ensure that only trusted sources can access the service.
    * **Vulnerability Scanning**: AnyGen uses automated vulnerability scanning tools to regularly detect server vulnerabilities. After the confirmation by security personnel, it will be notified to relevant personnel for processing and repair. The operation personnel will regularly update the system patches to effectively ensure the stable operation of the server.
    * **Intrusion Detection**: AnyGen's physical servers are fully deployed with HIDS (Host-based Intrusion Detection System), which can monitor server file baseline changes in real time, discover abnormal processes, capture active abnormal external links, Trojan backdoors, and other abnormal behaviors, and respond in a timely manner. In addition, all traffic from the client end is detected and verified by WAF (Web Application Firewall) to ensure its security and legality, and to block malicious requests in real time. The security team will closely track the security situation and the latest attack methods, study intrusion characteristics, and regularly upgrade defense strategies.
    * **Anomaly Detection**: Built on the big data platform and machine learning platform, the security team conducts multi-dimensional security analysis on the massive host logs generated by the server and the data collected by the self-developed HIDS, establishes an anomaly detection model, and timely discovers risky operations and abnormal processes on the server, malicious network connections, and other abnormal behaviors, and responds in a timely manner. The security team will closely track the security situation and the latest attack methods, continuously iterate the security algorithm model, update the abnormal behavior characteristics, and regularly upgrade the defense strategy.

    ## 5. Application Security

    * **Secure Development** **Process**: AnyGen strives to control security risks from the source of security vulnerabilities. By making security courses and providing training in the form of on-site and online programs, all developers and product managers must receive security training to understand the causes of relevant security vulnerabilities and strengthen coding knowledge. When the project starts, the security team communicates with the project manager to ensure that security requirements and security tests are reflected in the project plan. At the same time, the security team will evaluate the third-party libraries and tools used by the product, and discover vulnerabilities to ensure that there are no vulnerabilities introduced by the supply chain. The security team conducts design and code security reviews with the product team. Before the product goes online, a penetration test and a security assessment of deployment will be conducted to ensure the security of the service.
    * **Vulnerability and Security Incident Management**: AnyGen monitors internal and external security vulnerabilities and threat intelligence information through various means. The security team uses automated security scanning tools to scan its own services and operating systems, and conducts security checks on application systems through regular penetration tests. After the vulnerability and threat intelligence information is confirmed, the risk level will be determined according to the hazard situation, and it will be pushed to the relevant team for repair and processing as soon as possible. AnyGen has a complete vulnerability lifecycle management strategy, and a professional security team follows up on all security problem solving.

    At the same time, AnyGen's security team maintains close cooperation and communication with the industry’s top third-party evaluation companies and White Hat Communities. It will occasionally invite external companies and white hats to conduct penetration tests on the service and reward them to find out security holes as possible.

    AnyGen has a complete incident management process and implements a 7\*24 emergency response strategy. When a security incident occurs, the security team will quickly classify the incident according to the security emergency plan and start the emergency response process to prevent the security incident from expanding. After the security incident is processed, the incident will be reviewed. The content of the review includes the cause of the incident, the process and results of the incident handling, the main person in charge of the incident, and follow-up measures, etc., and the results of the review and follow-up measures will be recorded to ensure a closed loop of events. When a security incident affects users or customers, we will promptly notify users, customers, or other relevant parties in accordance with the incident handling process.

    ## 6. Data Security

    AnyGen has complete data life cycle management, and has a clear process and technical guarantees from the creation, storage, transmission, use, and destruction of data. AnyGen has corresponding control measures to ensure data transmission, data storage, data access, and the security of the data destruction process.

    * **Data Transmission**: AnyGen provides users with data transmission links that support strong encryption protocols. Data transmissions are all encrypted using HTTPS and using 2048-bit RSA keys.
    * **Data Storage**: AnyGen has developed a comprehensive data classification management method, and has implemented strict classification and classification management of collected user information, encrypted all sensitive information stored in the system, effectively protecting users' information security.
    * **Data Access**: Access to user data is strictly isolated with permissions. Users cannot access each other without authorization. By default, employees of AnyGen do not have access to any user data, and all operations of employees are strictly restricted and audited.
    * **Disposal of Data**:\*\* \*\*When AnyGen signs a cooperation agreement with the user organization, it agrees with the user organization that when the cooperation is terminated, AnyGen will process user-related data in accordance with laws and regulations, including but not limited to deletion and anonymization, both of which are irreversible. All data deletion and anonymization technical means comply with the prevailing industry standards and the requirements of laws and regulations.
    * **Data Security** **Inspection**: The login behavior, operation behavior, server security baseline file changes, access rights changes, and data access behaviors of all servers in AnyGen's online environment will be recorded. By establishing user behavior portraits and abnormal behavior models, the security team realizes the identification, analysis, and correlation of abnormal behaviors, and automatically detects various abnormal data access behaviors in real time, such as inappropriate access to data, malicious data crawling and risky operations, login abnormalities, privilege escalation, etc., and issues alarms or blocks them.

    ## 7. Disaster Recovery and Business Continuity

    AnyGen adopts a stateless design and a distributed architecture to ensure high availability and robust disaster recovery.

    * **Multi-Instance Cluster Deployment**: Backend services are deployed across multiple instances to ensure reliability. Granular monitoring of traffic and system health enables seamless state sharing and rapid failover between instances during traffic surges or hardware failures.
    * **Backup and Recovery**: AnyGen has formulated relevant regulations to standardize database backup strategies, backup data storage, and backup recovery testing. The business databases have regular snapshots and backups. At the same time, AnyGen has deployed a backup execution monitoring mechanism to ensure the integrity of data backups, and regularly conducts backup data recovery tests.
    * **Emergency** \*\* Drills\*\*: AnyGen has a complete emergency drill mechanism, and regularly conducts drills. Participants include business teams, security teams, and operation and maintenance teams. Disaster recovery drill is conducted at least once a year for situations that may cause business interruptions to ensure data availability.

    ## 8. Change Management

    * **Program Changes**: AnyGen has established comprehensive change management controls, and clarified the change management requirements and process, including change plan, change approval, and change implementation. Operations that have known or potential impacts on the stability, availability, and security of online services fall within the scope of online changes. AnyGen product development strictly controls the change operation to prevent the change operation from affecting the stability of the service. Online operations must have an operation request, which can only be carried out after approval. AnyGen has deployed independent development, testing, and production environments for each product-related application. The change operation follows the canary release and goes online. A small traffic test is required before the official release, so as to ensure the stability and security of the service.
    * **Source Code Control**: AnyGen has established a strict source code management process, and research personnel can only access and manage the code warehouse corresponding to their team. Each project code warehouse in the code warehouse has a person in chargeof the code warehouse. If the R\&D personnel need to apply for access to the code warehouse other than their team, they must submit the application in the code warehouse, and after the approval of the department head and the person in charge of the applied code warehouse, the corresponding permissions can be granted. Redundant permissions that remain unused for an extended period will be revoked.
    * **Infrastructure Changes**: AnyGen deploys an access control list at the border of the public network to control network access. If it is necessary to change the ACL configuration baseline and network access control list, the operation and maintenance personnel submit an application through the platform, and professional engineers will perform the operation after assessing the rationality of the change. Only authorized engineers have the permission to perform changes to the network access configuration.
    * **Change Monitoring**: AnyGen conducts internal audits every year to check the operation of AnyGen's internal control system, which covers the implementation effectiveness of control related to change management, and summarizes the results in the internal audit report. If abnormalities are found, the internal audit department and the relevant responsible team will communicate and follow up on the rectification results. Segregation of duties exists in the change management process, including change development, testing, approval, release, and monitoring.

    ## 9. AI Security and Trustworthiness

    AnyGen implements an engineered defense mechanism based on "in-house agents + tools + sandboxing" to mitigate AI-related risks.

    * **Identity Management**: Implements full-lifecycle identification and permission management for AI agents, ensuring all identities are verifiable and their permissions are strictly constrained.
    * **Secure Environment**: Provides a trusted execution environment for AI agents through device admission control, network isolation, and sandboxing.
    * **Controllable Behavior**: Performs focused monitoring and constraint of AI agent behaviors to ensure that they conform to expectations.
    * **Trusted Data**: Protects the security of data handled by AI agents during processing, including data leakage prevention, end-to-end encryption, and dynamic data masking.
    * **Trusted Content**: Ensures the security and compliance of AI agents' interaction content, including content moderation, anti-fraud, and prompt-injection defense.
  </Tab>

  <Tab title="日本語">
    # AnyGen セキュリティホワイトペーパー

    ## はじめに

    AnyGen は、AI を活用したリサーチや分析、ドキュメント・スプレッドシート・スライドの自動生成、さらには複雑なタスクのエンドツーエンドな自動化を実現する、スケーラブルな AI エージェントサービスです。クロスプラットフォームでのシームレスなデータ連携を強みとし、高い可用性を備えたビジネスインフラとして提供されます。

    そして、これらの製品、ならびにお客様のデータのライフサイクル全体にわたるセキュリティを保障するため、業界最先端の管理手法や技術ソリューションを採用しております。設計から開発、運用にいたるまで、コンプライアンスや個人情報（プライバシー）保護の要請について十二分に熟慮されており、ネットワークセキュリティや個人情報（プライバシー）、データ保護等に関する法律法規や各種ガイドラインの要件を確実に満たすようにしています。

    ## セキュリティチームとその役割

    従来の SaaS サービスのセキュリティモデルと同様に、AnyGen プラットフォームでは、業務の範囲は以下の複数の明確な領域に分かれています。

    * **セキュリティ** **管理および** **コンプライアンス**：エンタープライズレベルのセキュリティポリシーと標準を AnyGen 開発チームに伝達する役割を担います。本領域では、安全な開発プラクティスを確立し、AnyGen のデータストレージモデルが企業のデータ処理基準に準拠していることを保証します。
    * **ビジネスおよび** **プロダクトセキュリティ**：AnyGen の複雑なビジネスロジックにおける、アクセス制御と権限の不正昇格の防止に重点を置いています。
    * **データセキュリティ**：AnyGen が取り扱うデータの機密性、完全性、および可用性を確保します。
    * **インシデントレスポンスおよびディザスタリカバリ**：実行時の異常検知、および緊急時のセキュリティ事案への対応を管理します。

    ## 社員のセキュリティ

    AnyGen における社員管理は、全社統一のポリシーに基づいています。本システムは機密性の高いモデルデータ、ビジネス設定、およびシステム管理機能を取り扱うため、すべての研究開発（R\&D）、運用、およびビジネスサポート担当者は厳格なライフサイクル管理の対象となります。これにより、悪意ある行為や過失によってコードの品質やシステムの安定性が損なわれることを防ぎます。

    #### 採用・異動・退職時の管理

    すべての新採用者および内部異動者は、標準化されたバックグラウンドチェックと承認プロセスを経て配属されます。退職や職務変更の際には、オーファンアカウントを排除するため、システム上で迅速かつ体系的に権限の回収が行われます。

    #### 守秘義務およびコンプライアンス合意

    全社員に対し、厳格な秘密保持契約への署名を義務付けています。ユーザーから報告されたシステムトラブルシューティングやデータ分析に対応する際、ユーザーのビジネスデータへの不正アクセスは厳禁されており、すべての活動は厳格なデータマスキングおよびクエリ制御プロトコルに従う必要があります。

    #### セキュリティ研修と意識向上

    AnyGen は、専門識・スキルや情報セキュリティ意識向上に関する次のような研修を不定期に行っています。

    * 情報セキュリティに関する不定期研修で、社員の情報セキュリティスキル向上をはかる（年 1 回以上）
    * 情報セキュリティのアクティビティで、情報セキュリティ意識の周知徹底をはかる（年 1 回以上）
    * セキュリティ意識向上に関する宣伝物の作成や、メール・ポスターなどによりセキュリティ意識を浸透させる

    #### デバイスおよびオフィス環境セキュリティ

    AnyGen は、社員に対するデバイスセキュリティマネジメントポリシーを定めています。すべてのデバイスにデフォルトで実施されており、このセキュリティ設定を社員自身が削除・編集できなくなっています。

    社員のパソコンには、アンチウイルスソフトがインストールされており、これを無効化したり、アンインストールしたり、設定を変更したりといった操作をバックエンドで禁止しています。セキュリティ設定ができるのは、アンチウイルスソフトの管理者アカウントを持つ、一部の IT 部の社員に限られています。アンチウイルスソフトは、パターンファイルをリアルタイムに更新しており、定期的に業務用デバイス全体に対するウィルススキャンを実行します。

    また、AnyGen では、社員用デバイスのデータやファイルのセキュリティ保護のため、磁気ディスクに対してもディスク全体の暗号化を行っています。業務用デバイスは退職時に返却が必須であり、デバイス内の情報は IT 部によってランダムデータの上書きによって消去されます。

    ## ネットワークセキュリティ

    #### ネットワークアクセス制御

    AnyGen は、アクセス制御リスト（ACL）によるフェンシングを行っています。社内のネットワーク環境をゲスト、オフィス、開発・テスト環境、本番環境などのエリアに分割しているほか、全社員を AnyGen のネットワーク境界の外に置いているため、VPN を介さなければ開発・テスト環境、本番環境にアクセスできないようになっています。さらに、アクセスログなどは内部監査部門によってチェックされており、不正な操作記録があれば追跡・処罰の対象となります。

    AnyGen では内部リソースへのアクセスも、厳格な社員アクセス制御ポリシーで制限されています。社員であっても内部リソースにアクセスする際には、ID による認証が行われ、その後、デフォルトで必要最小限の権限のみが付与されるのです。別の権限を取得するには、責任者から承認を受けねばなりませんし、記録に残されます。さらに、権限には有効期限が設けられ、終了後には自動的に回収される仕組みになっています。社員によるオンラインサービスの操作は、すべて要塞ホストを介しており、全操作ログが 180 日間以上保存されるほか、内部監査部門によるチェックも実施されています。

    #### ネットワークファイアウォール

    AnyGen システムに対する既知のネットワークセキュリティ脆弱性への攻撃は、ネットワークファイアウォールで阻止しています。ネットワークファイアウォールのルールは、コンプライアンス部門の許可されたエンジニアによって、一元的に設定されています。また、ネットワークファイアウォール設定の更新は、自動と手動を組み合わせる手法をとっています。

    #### DDoS およびサイバー攻撃対策

    お客様の AnyGen サービスへのアクセスは、CDN や動的サイトアクセラレーションを介して接続された後、AnyGen のロードバランスを経由してバックエンドサービスに到達します。AnyGen は、業界トップクラスの DDoS 防御サービスを設けており、大量のトラフィックや連続アクセスなども効果的に防御することができます。

    ## サーバーと実行環境のセキュリティ

    #### サーバーのアクセス制御

    AnyGen は、サーバーアセットのスキャンを定期的に実行しており、不必要なポートやサービスがあれば、随時無効化しています。このように外部への権限を最小化したり、安全ではないサービスをフィルタリングしたりすることで、セキュリティの問題を低減させます。セキュリティ部門が定期的にウィークパスワードテストを行い、保守運用担当者が脆弱なパスワードの変更を促すことで、暴力的なハッキングを防ぎます。 サーバーに対するアクセスはすべて要塞ホストによる審査を介す必要があります。業務サービスへのアクセス元は許可リストで制御されており、信頼できるアクセス元以外はブロックされるようになっています。

    #### 脆弱性スキャン

    AnyGen では定期的に、脆弱性自動スキャンツールによるサーバーの脆弱性テストを行っています。テストの結果はセキュリティ部門で確認を行った後、即座に関係者に連絡して修復作業に移ります。また、サーバーの安定稼働を保障するため、システムの追加・更新作業が保守運用部門によって実施されています。

    #### 侵入検知

    AnyGen の物理サーバーは、HIDS（ホスト型侵入検知システム）を全面的に配置しており、ファイルのベースラインからの変更をリアルタイムでモニタリングしています。ほかにも、異常なプロセスやアクティブな異常接続、トロイなどの異常な挙動を検知し、すぐに対応しています。また、お客様のアプリからのトラフィックは WAF（Web アプリケーションファイアウォール）で攻撃性のチェックと検証が行われ、安全性と合法性が確認されます。もし、悪意のあるリクエストと判断されれば、リアルタイムでブロックされます。さらに、セキュリティチームがセキュリティの稼働状況や最新の攻撃手法にしっかりとキャッチアップすることで、侵入パターンの研究にあたるとともに、防御ポリシーの定期的なアップグレードに努めています。

    #### 異常検知

    サーバーに蓄積された大量のマスターログや自己開発した HIDS の収集データは、セキュリティチームがビッグデータや機械学習プラットフォームを活用して、多元的なセキュリティ分析と異常検知モデルの構築を行っています。これにより、サーバー上の高リスク操作や異常なプロセス、悪意のあるネットワーク接続などの異常な挙動をすばやく発見し、すぐに対応できるようにしています。また、セキュリティチームがセキュリティの稼働状況や最新の攻撃手法にしっかりとキャッチアップし、セキュリティアルゴリズムのモデル更新を続けているため、異常な挙動のパターンを最新に保ちつつ、防御ポリシーの定期的なアップグレードも可能となっています。

    ## アプリケーションセキュリティ

    #### セキュア開発プロセス

    AnyGen はセキュリティリスクについて、脆弱性の大元から制御することを目指しています。そのため、セキュリティに関するカリキュラムを作成し、オンライン・オフラインでの研修を実施しており、開発スタッフ、プロダクトマネージャー全員にセキュリティ研修を義務付けています。これにより、脆弱性の原因やコードなどについて理解を深めています。プロジェクトのスタート時には、セキュリティチームがプロジェクトマネージャーと話し合いを行って、セキュリティニーズやセキュリティテストを計画から織り込むようにしています。さらに製品に使用するサードパーティーのライブラリ、ツール由来の脆弱性が製品に持ち越されないように、セキュリティチームによる評価や脆弱性の確認も行われています。設計や実際のコードについても、製品チームとともにセキュリティチームによるセキュリティレビューが実施され、リリース前にもペネトレーションテストやセキュリティ評価を行うなど、サービスのセキュリティ確保に努めています。

    #### 脆弱性とセキュリティインシデントのマネジメント

    AnyGen は、内部・外部の脆弱性や脅威インテリジェンスについて、様々な方法でモニタリングを行っています。自社のサービスや OS については、セキュリティチームの自動セキュリティスキャンツールでスキャンし、アプリケーションについても定期的なペネトレーションテストでセキュリティをチェックしています。脆弱性や脅威インテリジェンスが認められたら、その危険性に応じてリスクレベルが決定され、すぐさま関係部門に伝えられて修正対応がとられるとともに、AnyGen が設けている脆弱性ライフサイクル管理ポリシーにのっとって、専門チームが解決までフォローします。

    また、AnyGen のセキュリティチームは、できるだけ多くの脆弱性を発見することを目的に、業界トップクラスの第三者評価企業やホワイトハットコミュニティと密接に連携しており、不定期に報奨金を拠出して、外部企業やホワイトハッカーにペネトレーションテストを依頼したりもしています。

    さらに、AnyGen はインシデント管理フローに基づく 24 時間 365 日の緊急対応ポリシーを実施しています。セキュリティインシデントが発生した場合、セキュリティチームがセキュリティ緊急対応計画に基づきインシデントのレベルを迅速に判断し、緊急対応プロセスをスタートして、セキュリティインシデントの拡大を阻止します。対応が完了したら、発生原因や対応の過程と結果、インシデント責任者、フォローアップ措置などの事後レビューを行い、その結果と措置を記録して、インシデントをクローズします。ユーザーやお客様に影響の及ぶセキュリティインシデントであった場合は、インシデント対応プロセスにのっとってユーザーやお客様、その他の関連当事者に適時通知します。

    ## データセキュリティ

    AnyGen は、データに対して完全なライフサイクル管理を行っており、データの作成から保存、伝送、使用、廃棄の各段階について明確なプロセスと、それを可能にする技術を備えています。また、データの転送、保存、アクセス、廃棄プロセスのセキュリティについても、相応の管理措置が策定されています。

    #### データの伝送

    AnyGen は、強力な暗号化プロトコルをサポートするデータ伝送経路をテナントに提供し ています。データ伝送には、HTTPS を使用して暗号化を行うほか、2048 ビットの RSA キーを使用しています。

    #### データの保存

    AnyGen は、データのカテゴリ別・グレード別管理手法を定めており、収集したユーザー 情報に厳格に適用されています。また、システム内に保存しているすべてのセンシティブ情報には暗号化処理を施して、ユーザー情報のセキュリティを保障しています。

    #### データのアクセス

    ユーザーデータへのアクセスは、厳格な権限分離を行っており、許可されていないユーザー間で互いにアクセスすることはできません。

    お客様やユーザーのデータへアクセスできないようにデフォルト設定されており、社員による操作はすべて厳格に制限され、監査の対象にもなっています。

    #### データの廃棄

    AnyGen は、ユーザー法人との提携契約を締結する際に、契約終了時のデータ処理について、法的要件に従ってアカウントに関するデータを削除、匿名化等の処理を行うことを取り決めます。

    データの削除および匿名化技術は、業界基準や法的要件に合致するものを採用しており、いずれも不可逆的な処理となります。

    #### データのセキュリティテスト

    AnyGen のオンライン環境にある、すべてのサーバーへのログイン行為、操作、サーバーセキュリティベースラインの変更、アクセス権限の変更、データへのアクセス行為は、すべて記録されます。また、セキュリティチームがユーザー行為のキャプチャや異常行為モデルの構築を実施しており、異常行為の識別、分析、関連付けを実現し、データに対する不正アクセス、悪意あるクローリングおよび高リスク操作、ログイン異常、権限のアップグレード等のような正常ではないデータアクセス行為をリアルタイムで自動検測し、警告および遮断しています。

    ## ディザスタリカバリ（DR）と事業継続性

    AnyGen は、高い可用性と堅牢なディザスタリカバリ能力を確保するため、ステートレス設計および分散アーキテクチャを採用しています。

    #### マルチインスタンスクラスタ展開

    バックエンドサービスは、信頼性を担保するために複数のインスタンスに展開されています。トラフィックとシステムの状態を継続的にモニタリングすることで、トラフィックの急増時やハードウェア障害時においても、シームレスな状態共有とインスタンス間の迅速なフェイルオーバーを実現しています。

    #### バックアップとディザスタリカバリ

    AnyGen は、データベースのバックアップポリシー、バックアップデータの保管、リストアテストなどについて標準化した規程を定めています。業務データベースは、定期的にスナップショットとバックアップを作成しており、そのデータを 2 拠点で 3 つ保存しています。さらに、バックアップ状況をモニタリングする仕組みもあり、バックアップの完全性を確保しつつ、定期的なリストアテストを実施しています。

    #### 緊急対応シミュレーション

    AnyGen は、緊急対応シミュレーションを整備しており、定期的に演習を行うことで、障害発生に備えています。この演習には業務チーム、セキュリティチーム、保守運用チームなどが参加しており、年に 1 回以上の頻度で業務中断シナリオに関する DR 演習を行って、データの可用性を保障しています。

    ## 変更制御

    #### プログラムの変更

    AnyGen はプログラムの変更管理規程を定めており、変更案の立案、承認、実施など変更管理の要件やプロセスを明確化しています。オンラインサービスの安定性、可用性、安全性に対して影響のあることが既知である、またはその恐れがある操作は、オンライン変更の範囲に含めています。AnyGen の製品開発では、厳格な変更管理が行われており、変更がサービスの安定性に影響を及ぼさないようにしています。オンライン操作には指示書を必須としており、許可のない状態では実行できないようになっています。各製品に関するアプリには開発、テスト、生産用の独立環境を設けており、ダークローンチによるリリースが遵守されています。リリースは、サービスの安定性およびセキュリティを確保するために、負荷テストを実施しなければできないようになっています。

    #### ソースコードの管理

    AnyGen は、厳格なソースコード管理プロセスを定めており、研究開発メンバーは自分の所属チームが扱うリポジトリしかアクセス・管理できません。リポジトリ内部にあるプロジェクトリポジトリは、リポジトリ担当者を設定しています。チーム外のリポジトリのアクセス権限が必要な場合、リポジトリ内で申請を提出して、その部門責任者と当該リポジトリの担当者の承認を得る必要があります。

    #### インフラの変更

    AnyGen は、パブリックネットワークの境界にアクセス制御リスト（ACL）を配置して、ネットワークアクセスを制御しています。ACL 設定ベースラインやネットワークのアクセス制御リストに変更の必要が生じた場合、保守運用メンバーが所定のプラットフォームから申請を提出し、専門エンジニアによって変更が合理的であると判断されなければ、変更はできなくなっています。また、ネットワークアクセス設定の変更操作の権限は、許可を得たエンジニアだけに限られています。

    #### 変更モニタリング

    AnyGen は毎年、内部統制として内部監査システムの実施状況をチェックしております。そのなかには変更管理の有効性チェックも含まれており、内部監査報告書にまとめられます。異常が認められたら、内部監査部門と担当チームに連絡して是正を行い、その結果をフォローまで行います。開発、テスト、承認、リリース、モニタリングなど変更管理で兼任すべきではない職務は、きちんと分離されています。

    ## AI セキュリティと信頼性

    AnyGen は、AI に関するリスクを軽減するため、「自社開発エージェント ＋ ツール ＋ サンドボックス」に基づいたエンジニアリングによる防御メカニズムを実装しています。

    #### アイデンティティ管理

    AI エージェントに対してフルライフサイクルの識別および権限管理を実施しています。これにより、エージェントのアイデンティティが検証可能であることを保証し、付与される権限を必要最小限に厳格に制限しています。

    #### セキュアな環境

    デバイスの認証制御、ネットワーク分離、およびサンドボックス技術を組み合わせることで、AI エージェントのための信頼された実行環境（Trusted Execution Environment）を構築しています。

    #### 制御可能な挙動

    AI エージェントの挙動を重点的にモニタリング・制約し、エージェントの挙動が常に設計上の期待値に準拠するよう制御しています。

    #### 信頼できるデータ

    データ漏洩防止（DLP）、エンドツーエンド暗号化、および動的なデータマスキング等を含む、AI エージェントが処理する機密データを保護します。

    #### 信頼できるコンテンツ

    コンテンツモデレーション、アンチフラウド、プロンプトインジェクション防御をはじめとする多重の安全対策を講じています。これにより、AI エージェントとの対話における安全性を高め、高いコンプライアンス基準を遵守したサービス提供を実現しています。
  </Tab>
</Tabs>
