SOC 2-aligned controls, encryption in transit and at rest, SSO, role-based access, and regional data residency for global operators.
All data is encrypted using AES-256 at rest and TLS 1.3 in transit. Customer data is isolated at the storage layer with per-tenant encryption keys.
Support for SAML 2.0 and OIDC-based SSO, enabling integration with Okta, Azure AD, Google Workspace, and any standards-compliant identity provider.
Granular permissions at the site, role, and data level. Define custom roles with least-privilege access to ensure users see only what they need.
Every action is logged with timestamps, user identity, and context. Logs are immutable and retained for 12 months for compliance and forensics.
Data is stored in the region of your choice (US, EU, UK, or APAC). We support data locality requirements for regulated industries and government contracts.
Our controls are designed to align with SOC 2 Type II criteria. Annual audits validate the effectiveness of our security, availability, and confidentiality safeguards.
Security, availability, and confidentiality controls audited annually
Information security management system framework (in progress)
Data protection and privacy compliance for EU users
Encryption standard for data at rest
Encryption protocol for data in transit
Industry-standard authentication protocols
You choose your data region during onboarding. We currently offer data residency in the United States, European Union, United Kingdom, and Asia-Pacific (Singapore). Data is stored in SOC 2-compliant cloud infrastructure with isolated storage per tenant.
Our security team can share our SOC 2 report, penetration testing results, data processing agreement, and answer any questions about our architecture.