Skip to contentSkip to main content
Free benchmarkAI readiness roadmap for professionals, teams, and all 60 industriesStart assessment

Regulatory Compliance

We meet the highest standards for data protection, privacy, and security compliance.

Regulations We Comply With

Key regulatory frameworks and our compliance approach.

SOC 2 Type II

Our SOC 2 Type II report demonstrates that our security controls have been independently audited and tested over a 12-month period.

Security Availability Processing Integrity Confidentiality Privacy

GDPR

Full compliance with the EU General Data Protection Regulation. We serve as both data controller and processor with appropriate agreements in place.

Data Minimization Purpose Limitation Right to Erasure Data Portability DPO Appointed

CCPA

Compliant with the California Consumer Privacy Act. California residents can exercise their privacy rights through our dedicated portal.

Right to Know Right to Delete Right to Opt-Out Non-Discrimination Do Not Sell

Data Protection

Industry-standard data protection measures including AES-256 encryption, role-based access control, and 72-hour breach notification commitment.

Encryption at Rest Encryption in Transit Access Controls Audit Logging Breach Notification

Standards & Certifications

Industry standards we meet or are working towards.

StandardStatus
ISO 27001In Progress
PCI DSS v4.0Not Required
HIPAAReady
FERPACompliant
WCAG 2.1 AACompliant
NIST CSFAligned

Your Data Rights

You have the right to control your personal data at any time.

Access Your Data

Request a copy of all personal data we hold about you.

Correct Data

Request corrections to inaccurate or incomplete data.

Delete Data

Request deletion of your personal data (right to erasure).

Port Data

Receive your data in a machine-readable format for transfer.