Securing your data in IBM watsonx Orchestrate

Learn how watsonx Orchestrate service stores and encrypts data in IBM Cloud and how you can delete some of the stored data.

How your data is stored and encrypted in watsonx Orchestrate

watsonx Orchestrate encrypts all data at rest by using the Advanced Encryption Standard (AES-256). Data in transit is encrypted by using the Transport Layer Security (TLS) 1.2 or above. watsonx Orchestrate does not store personally identifiable information (PII).

IBM Cloud automatically manages the encryption keys for watsonx Orchestrate in IBM® Key Protect for IBM Cloud®. The data that you store in IBM Cloud is encrypted at rest by using a randomly generated key. All database instances in IBM Cloud are automatically encrypted at rest by default.

Deleting your data in watsonx Orchestrate

IBM watsonx Orchestrate provides options to delete the data in use from within the service, like imported skills, projects, skill flows, AI assistants, and shared credentials. The data deleted within the service keeps stored at rest in the service backups.


Parent topic:

Enhancing security for watsonx Orchestrate on IBM Cloud