Trust is Everything

Your data is precious. We’re serious about protecting it.

Data security is a top priority

Storage

High resolution images or data files are encrypted and stored in our Microsoft Azure cloud environment.

Tabular data, like ELN tables or DNA sequences, are hosted on dedicated high performance servers in a high security data centre in the UK.

The data centre is Tier IV certified, which is the highest level of certification, guaranteeing 99.999% availability and complete “fault tolerant” infrastructure; ISO27001 certified, which is the international gold standard for Information Security Management Systems; and protected by perimeter fencing, 24/7 CCTV and rigorous biometric access controls.

We also back up all data to a secondary dedicated server every night to provide failover redundancy and ensure that your data is never lost.

Encryption

While in transit, secure HTTPS (TLS 1.2+) protects data moving between your browser and our Azure Containers.

At rest, your data is encrypted using AES-256 bit encryption.

We use Azure Key Vaults to manage encryption keys and service credentials, ensuring that even our developers do not have direct access to your primary security keys.

Our backend services are also firewalled, such that only the web-facing containers are accessible to the public internet.

Access

Your scientific findings are subject to “full data sovereignty”. This means that:

  • Nobody outside of your authorised organisation has access to your files or research records.
  • Only a minimum number of Lab Thread’s vetted administrators have even temporary, audited access to the SQL environment; and only at your explicit request for support or debugging.
  • Your data is never used for AI model training or shared with third parties; your discovery remains your exclusive property.

Our system has been fully stress tested

Annual penetration testing

We commission thorough independent third-party penetration testing annually, and any recommended improvements are implemented as soon as possible. Our system settings and implementation conform to all recommended industry standards and best practices for cybersecurity.

“The assessment concluded with a positive result, revealing a generally robust security posture across the Lab Thread application… Key strengths observed include strong input validation and a functional authorisation model that prevents users from accessing unauthorised data or administrative functions. No critical or high-risk vulnerabilities were identified during the engagement, indicating that the platform's development lifecycle prioritises security-by-design principles.”

Independent security report, December 2025.

Bot Protection

Lab Thread uses Google reCAPTCHA v3, which runs in the background to detect and block malicious automated access attempts without interrupting your workflow.

Certifications

FDA Certificate
Certified
ISO 9001
9001
In Progress
ISO 27001
27001
In Progress

Policies & Governance

Lab Thread is committed to protecting your data, and your privacy. Read our full policies here:

Everything you need to know

Clear answers to help your laboratory navigate from disconnected strands to a unified digital thread.
Who owns the IP and data I store in Lab Thread?

You retain full ownership and "Data Sovereignty" over all scientific findings, designs, and research records. We never use your data to train AI models or share it with any third parties.

Can Lab Thread employees see my research?

We operate on the "Principle of Least Privilege". Only a strictly limited number of vetted system administrators have temporary, audited access to the environment, and this only occurs if you explicitly request support or debugging assistance.

How does Lab Thread protect against data loss if a server fails?

To ensure your research is never lost, we maintain failover redundancy with nightly backups to a secondary dedicated server.

What is the guaranteed uptime for the platform?

Our servers are hosted in Tier IV certified data centers—the highest level available—which guarantees 99.999% availability and a completely "fault-tolerant" infrastructure.

Is it possible to host Lab Thread on my own local server?

While we can work with your IT team to implement a local or dedicated server setup, we generally do not recommend it due to the complexity and significant third-party licensing costs (such as Microsoft SQL) involved. Our cloud environment is specifically hardened and optimized for the platform's security and performance.

If I decide to leave the platform, how do I get my data out?

You can export tabular design data directly from the system at any time. ELN entries can be exported as a Zip file containing the entry as a PDF along with any associated files or embedded spreadsheets. We are also working on expanding this to allow for entire project exports.

Is every action in the system fully audit-trailed for regulatory purposes?

Yes, every action is captured, logged and preserved.

Are you ready to connect your lab?
Join the teams already weaving their research into a single, unbreakable digital thread
Start your 30 day free trial
* No credit card required