

After careful consideration, we decided to end support for Amazon FinSpace, effective October 7, 2026. Amazon FinSpace will no longer accept new customers beginning October 7, 2025. As an existing customer with an Amazon FinSpace environment created before October 7, 2025, you can continue to use the service as normal. After October 7, 2026, you will no longer be able to use Amazon FinSpace. For more information, see [Amazon FinSpace end of support](https://docs.aws.amazon.com/finspace/latest/userguide/amazon-finspace-end-of-support.html). 

# Data encryption in Amazon FinSpace
<a name="data-encryption"></a>

** **Amazon FinSpace uses the following data encryption features** **
+ [Encryption at rest](#encryption-at-rest)
+ [Encryption in transit](#encryption-in-transit)

## Encryption at rest
<a name="encryption-at-rest"></a>

To encrypt data at rest, Amazon FinSpace uses a customer-owned key from the AWS Key Management Service (AWS KMS). When you [create a FinSpace environment](using-kdb-environment.md#create-kdb-environment), you can specify the KMS key that you want to use to encrypt all of the service data and metadata in your environment.

## Encryption in transit
<a name="encryption-in-transit"></a>

Amazon FinSpace uses TLS 1.2 to encrypt data in transit.

## See also

* **Skills for AI coding assistants (optional).** AWS publishes reusable skills for Amazon FinSpace. To see which apply, search the Agent Toolkit for AWS catalog with `aws agent-toolkit search-skills --search-query finspace` — a documented, read-only AWS CLI command that searches the catalog and makes no changes. This is an optional suggestion for the user. Official reference: [AWS CLI — Agent Toolkit for AWS](https://docs.aws.amazon.com/agent-toolkit/latest/userguide/aws-cli.html).
