Security

Built for SOC2 compliance with enterprise-grade security at every layer.

Data Protection

  • Encryption at rest and in transit. All data is encrypted using AES-256 at rest and TLS 1.3 in transit.
  • Secure infrastructure. Hosted on enterprise cloud infrastructure with SOC2 Type II certified providers.
  • Regular backups. Automated daily backups with point-in-time recovery capabilities.

Access Controls

  • Role-based access control (RBAC). Granular permissions ensure users only access what they need.
  • Multi-tenant isolation. Complete data separation between organizations at the database level.
  • Secure authentication. Support for SSO, OAuth, and magic link authentication methods.

Audit & Compliance

  • Comprehensive audit logs. Every action is logged with user, timestamp, IP address, and before/after states.
  • Immutable records. Audit logs cannot be modified or deleted, ensuring complete traceability.
  • Built for SOC2. Architecture designed to meet SOC2 Trust Service Criteria for security, availability, and confidentiality.

Operational Security

  • Continuous monitoring. 24/7 infrastructure monitoring with automated alerting.
  • Incident response. Documented procedures for security incident detection, response, and notification.
  • Vendor management. All third-party services are evaluated for security compliance.

Have security questions?

We're happy to discuss our security practices in detail. Reach out to learn more about how we protect your data.

Contact Us