Security & Trust

Security is at the core of everything we do. Learn about our security practices, our compliance engine, and commitment to protecting your data.

Compliance Engine

Our compliance engine maps your controls and evidence to the frameworks that matter to you.

SOC 2 Type II

Supported

Controls mapped for independent third-party audits

ISO 27001

Supported

Information security management

GDPR

Supported

EU data protection compliance

HIPAA

Supported

Healthcare data protection

Infrastructure Security

Enterprise-grade security infrastructure to protect your data.

Encryption at Rest

All data is encrypted using AES-256 encryption at rest.

Encryption in Transit

TLS 1.3 for all data transmission with perfect forward secrecy.

Access Controls

Role-based access control with SSO and MFA support.

Penetration Testing

Regular third-party penetration testing and bug bounty program.

Our Security Practices

We maintain rigorous security practices across our organization to ensure the protection of your data and our platform.

All employees undergo security awareness training
Background checks for all team members
Least privilege access principle
Regular security audits and assessments
Incident response plan and procedures
24/7 security monitoring and alerting
Secure software development lifecycle (SSDLC)
Vendor security assessments

Security Documentation

Request our security documentation

We provide comprehensive security documentation including compliance mapping reports, penetration test summaries, and security questionnaire responses.

Request Documentation

Responsible Disclosure

We value the security research community. If you discover a vulnerability, please report it to us responsibly. We offer rewards for valid reports.

Report a Vulnerability