Skip to main content

Trust Center

Trust Center

Security, privacy and procurement resources for customers and enterprise buyers.

Compliance roadmap

In progress — not certified

SOC 2 Type II and HIPAA are on our enterprise roadmap and available for discussion on enterprise deals. We do not claim completed certifications until audits are finished. GDPR-oriented privacy practices, DPA and sub-processor details are published below.

  1. Gap assessment against SOC 2 Trust Services Criteria (security, availability, confidentiality).
  2. Remediate controls — access reviews, change management, vendor risk, logging.
  3. Engage an independent auditor and complete Type I, then Type II observation period.
  4. Publish report availability for qualified enterprise customers via procurement request.

Timeline depends on audit scope and evidence readiness. Ask sales for the current target window — we will not claim “SOC 2 certified” until the report is issued.

Dedicated support & SLA

Qualified enterprise workspaces can receive a contractual support tier with an assigned customer success manager, uptime target and response-time notes — visible in Settings after sales enables the account.

Security practices

Infrastructure, account safety and data handling.

System status

Live health checks and 99.9% uptime target.

Enterprise

SSO, white-label, volume and sales contact.

Enterprise overview PDF

Printable security & SLA summary for procurement.

SOC 2 readiness map

Shipped controls vs Trust Services Criteria — evidence table, not a certificate.

HIPAA readiness & BAA

Honest healthcare posture and BAA discussion path — not a HIPAA certificate.

Procurement request

Request a security questionnaire, BAA discussion or signed DPA.

Privacy Policy

How we collect and use personal data.

Data Processing Addendum

Controller/processor roles and processing terms.

Sub-processors

Third parties that help deliver the service.