Security & data handling · Last updated: July 24, 2026
Download PDF ↓MolWard provides in silico pharmaceutical development and compliance tools. We recognise that the structures, sequences, and process parameters you enter are among your most sensitive intellectual property. The platform is architected around a single principle: compute in memory, retain nothing.
For the analytical tools, the chemical structure, sequence, or dataset you submit is processed in volatile memory for the duration of a single request and is not written to a database or persistent store by the calculation engines. When the response is returned, the working data is released. We do not build a corpus of customer molecules, and we do not use your inputs to train models.
All traffic between your browser and MolWard services is encrypted in transit using industry-standard TLS. Static content and application front ends are served over HTTPS. Because the platform is zero-retention by design, customer scientific inputs are not stored at rest by the calculation engines.
Some tools offer an optional AI-assisted narrative or interpretation. When you invoke it:
Reports are stamped with a report identifier, a UTC generation timestamp, and a SHA-256 integrity hash computed over the canonical result. This makes a report tamper-evident: the hash can be recomputed later to confirm the document was not altered. This supports a 21 CFR Part 11 / ALCOA+ data-integrity workflow; it does not by itself constitute a validated Part 11 system, which remains the responsibility of the deploying organisation.
Public tools are open for evaluation. Restricted tools are protected by an access credential. Access controls are enforced server-side; browser-level controls such as CORS are used for hygiene but are not relied upon as an access boundary.
MolWard runs on established cloud infrastructure providers and uses a small number of sub-processors strictly to deliver the service (application hosting, static site delivery, and — only when you invoke it — an AI model provider). We do not sell data to, or share customer scientific inputs with, any third party for their own purposes. A current list of sub-processors is available on request.
MolWard is currently offered as a Beta program. We design to the principles behind GDPR (data minimisation, purpose limitation) and 21 CFR Part 11 (integrity, traceability). MolWard is not yet independently certified to SOC 2 or ISO 27001; formal third-party attestation is a planned milestone, and we will publish it here when achieved. We will not claim a certification we do not hold.
If you believe you have found a security vulnerability, please contact us at contact@molward.com with details. We ask that you give us a reasonable opportunity to remediate before any public disclosure.
Questions about security or data handling: contact@molward.com. See also our Privacy Policy Security & Zero-Retention Scientific Methodology Release Notes and Terms.