Compliance Status
CASA
Certified
SOC 2 Infrastructure
Infrastructure Partners
GDPR
Aligned
CCPA
Aligned
WCAG 2.1
AA Level
Security Highlights
Encryption
All data encrypted in transit (TLS 1.3) and at rest (AES-256) with managed key rotation.
Access Control
Role-based access with complete audit logging of all data access.
Infrastructure
Enterprise-grade cloud hosting with SOC 2 certified data centers and automatic failover.
Data Residency
Primary data centers in the United States. Data transfer mechanisms aligned with GDPR principles.
Policies & Documentation
Infrastructure Partners
| Provider | Service |
|---|---|
| Supabase | Database & Auth |
| Vercel | Frontend Hosting |
| Railway | Background Worker Hosting |
| OpenAI | AI Processing |
| Anthropic | AI Processing |
| AI Processing | |
| LlamaParse | Document Extraction |
| Stripe | Payments |
See our full Subprocessor Registry for all third-party processors.
Questions About Security or Compliance?
Our team is ready to help with security assessments and compliance questions.