Skip to content

Privacy, by design

Research review that fits your Microsoft environment

Bring Entra identity, Teams collaboration, SharePoint documents, and Azure storage into one governed workflow — without asking researchers to abandon the tools they already use.

Your content stays yours

We protect manuscripts with scoped access controls and application and infrastructure security measures. Production provider settings are reviewed through our compliance program.

Privacy policy

Not used to train PerfectPaper models

Your papers are yours. PerfectPaper does not use uploads to train its own models; configured providers process content to deliver requested reviews.

How we handle your data

A compliance roadmap

Our SOC 2 readiness program covers security, availability, and confidentiality. No SOC 2 report or ISO 27001 certification has been issued.

See compliance

Enterprise controls

Current controls and configurable deployment capabilities. Final availability depends on your deployment and contract.

Deployment requests

Custom roles, password policies, passkey-only enforcement, customer-controlled infrastructure, and offline or on-premises deployments require solution design. We do not present them as shipped controls; contact sales to scope them.

Discuss a deployment

Built for the Microsoft shop

One governed path from Entra to the paper

PerfectPaper connects the Microsoft 365 services your organization already governs, while keeping administrators in control of identity, permissions, storage, and document movement.

Your tenant

Entra PerfectPaper Microsoft 365

Microsoft Entra

Identity that stays tenant-bound

Sign in with OIDC or SAML, honor your organization's MFA and Conditional Access policies, and link accounts with Entra's immutable identity.

Directory access

Groups become governed access

Map Entra security groups to organization roles. Sync adds active members and safely removes only access that the mapping managed.

Microsoft Teams

Reviews meet people where they work

Deliver signed Adaptive Cards and proactive review notifications, with tenant-linked accounts and controls to check, mute, or resume updates.

SharePoint

Controlled document movement

Import manuscripts from approved folders and export completed work back to selected sites without granting tenant-wide SharePoint access.

Certificate-backed Graph access

Use certificate credentials instead of long-lived client secrets.

Least-privilege permissions

Sites.Selected and purpose-specific Graph scopes keep access narrow.

Private Azure storage

Azure Blob Storage can remain the encrypted system of record.

Deploy the Teams app inside your tenant and configure every Microsoft connection from the Enterprise control plane.

Plan your Microsoft rollout

Security

We treat manuscripts as confidential, protect them with scoped access and infrastructure security controls, and do not use them to train PerfectPaper models.

Read the full security page
  • Application and provider encryption controls
  • Content not used to train PerfectPaper models
  • Input sanitization on every upload

Teams & organizations

Bring your lab or department together with shared organizations, roles, and credits.

  • Organizations with owner, admin, and member roles
  • Groups and per-project access
  • A shared credit pool with per-member allocation
  • Seat-based contracts with high-water billing and internal invoicing

Access & identity

Sign in the way your institution already does, and control exactly who sees what.

  • Single sign-on — SAML 2.0 and OIDC (Entra, Okta, and any standard IdP)
  • SCIM 2.0 provisioning; deprovisioning ends sessions immediately
  • Domain routing with just-in-time provisioning
  • Organization-enforced multi-factor authentication
  • TOTP and WebAuthn passkeys for member authentication
  • Granular, scoped access grants

Developer platform

Automate reviews and stream events into your own systems.

API docs
  • API keys and a REST API — full OpenAPI reference
  • Organization-scoped webhooks, HMAC-signed, at-least-once
  • Delivery log with one-click replay
  • Domain events and metrics endpoints for your observability stack

Compliance & data

Clear data handling and a compliance roadmap you can share with your IT team.

  • Append-only audit logs of role, access, and authentication events
  • Encryption at rest for secrets and sensitive fields
  • EU data-residency architecture documented; availability requires confirmation
  • AWS KMS customer-managed keys where configured
  • Documented subprocessors and data handling
  • SOC 2 readiness program in progress — no report issued yet

Support & SLAs

Dedicated support, onboarding help, and service-level agreements are available on enterprise plans.

Talk to sales
  • Dedicated support contact
  • Onboarding and IT help-desk resources
  • Service-level agreements (SLAs)

From first call to full rollout

1

Talk to us

Tell us about your lab, department, or institution. We'll scope seats, data residency, and your identity setup on the first call.

2

Security review & pilot

Your IT team gets our documentation — subprocessors, data handling, DPA — while a pilot group reviews real manuscripts.

3

Roll out with your directory

Entra sign-in and group mappings go live, approved SharePoint locations connect, and the Teams bot follows review work into your researchers' channels.

Talk to us about your team.

Tell us about your lab, department, or institution and we'll help you get set up — including security review, onboarding, and SLAs.