SOC 2 Type II Compliant

Security

We maintain rigorous compliance standards ensuring data protection. Your data never trains our AI models.

Last updated: February 2026

AICPA SOC 2 for Service Organizations

Compliance & Certifications

SOC 2 Type I: Compliant

SOC 2 Type II: Compliant

Audit period: August 20, 2025 – November 19, 2025 · Johanson Group LLP

Our Commitments
  • You own your inputs and outputs.

  • Data is not retained any longer than you choose to keep it on our platform.

  • No models are ever trained on your data.

  • Database access is restricted and monitored.

Security Architecture
  • Data encryption at rest (AES-256) and in transit (TLS 1.2+).

  • Fully separate databases and storage per tenant for increased data isolation.

  • Enterprise-level authentication through Clerk.

  • Regular security audits and penetration testing.

Data Protection
  • All data is encrypted at rest using AES-256 encryption.

  • All data in transit is protected with TLS 1.2+ encryption.

  • Regular automated backups with encryption.

  • Comprehensive logging and monitoring systems.

Questions about our security posture?