Regulatory Compliance
We meet the highest standards for data protection, privacy, and security compliance.
Regulations We Comply With
Key regulatory frameworks and our compliance approach.
SOC 2 Type II
Our SOC 2 Type II report demonstrates that our security controls have been independently audited and tested over a 12-month period.
GDPR
Full compliance with the EU General Data Protection Regulation. We serve as both data controller and processor with appropriate agreements in place.
CCPA
Compliant with the California Consumer Privacy Act. California residents can exercise their privacy rights through our dedicated portal.
Data Protection
Industry-standard data protection measures including AES-256 encryption, role-based access control, and 72-hour breach notification commitment.
Standards & Certifications
Industry standards we meet or are working towards.
| Standard | Status |
|---|---|
| ISO 27001 | In Progress |
| PCI DSS v4.0 | Not Required |
| HIPAA | Ready |
| FERPA | Compliant |
| WCAG 2.1 AA | Compliant |
| NIST CSF | Aligned |
Your Data Rights
You have the right to control your personal data at any time.
Access Your Data
Request a copy of all personal data we hold about you.
Correct Data
Request corrections to inaccurate or incomplete data.
Delete Data
Request deletion of your personal data (right to erasure).
Port Data
Receive your data in a machine-readable format for transfer.