Trust & Data
Sequences, target proteins, and project context are the core intellectual property of any R&D team. Here is exactly what we do — and do not do — with them.
Commitments
Your sequences, target proteins, and project data are never used to train or fine-tune any model — ours or anyone else's. There is no training pipeline connected to your inputs.
We support mutual NDAs in pilot and enterprise engagements. Contact lei@bluex.net.cn to initiate.
Processing runs on our own infrastructure in China (Aliyun). LLM inference is self-hosted (Qwen3 on our DGX hardware); retrieval is self-hosted (Qdrant). Data does not leave this environment.
Research queries and sequences are processed in memory only and are not persisted. If you voluntarily submit assay feedback, you can request deletion at any time via lei@bluex.net.cn.
Technical safeguards
The following measures are enforced on all evolrix.bio responses (verified live as of 2026-07-17):
HSTS — Strict-Transport-Security: max-age=31536000; includeSubDomains
Content Security Policy — enforced (reporting enabled for anomaly detection)
X-Frame-Options — SAMEORIGIN (clickjacking prevention)
X-Content-Type-Options — nosniff (MIME-type sniffing prevention)
Referrer-Policy — strict-origin-when-cross-origin
Permissions-Policy — geolocation=(), microphone=(), camera=()
TLS — 1.2+ enforced for all connections
Automated adversarial testing
Once a month, an automated probe runs a real research session on the public path containing a deliberately fabricated citation (PMID:99999999) and a fabricated 12 g/L titer claim. The session is healthy only when the review layer stamps the fabrication — WARN or FAIL. If a fabricated claim ever receives PASS, the probe raises an alert.
Why do this: a reviewer that never fails a test is a reviewer you cannot trust. The probe is a standing regression test — it verifies the audit behaves correctly against known-bad input, not just against honest output.
Current record: the first two probes (2026-07-27) were both caught — session verdict FAIL, fabricated claim stamped. Results feed our monitoring dashboard continuously; a passing probe pages us.
Scope: this is an automated regression test for the review layer. It raises confidence in the mechanism; it is not a correctness guarantee for any individual dossier.
Related
Privacy Policy — detailed data handling for chat, feedback, and local storage.
Acceptable Use — what users may and may not do.
Safety & Responsibility — biosecurity screening and dual-use review.
Terms of Service — engagement terms.
Provenance, not persuasion. Your sequences stay yours.
No training on your data, self-hosted inference, delete on request — stated on the record.