How we protect your data, and the standards we're independently audited against.
Last updated: July 4, 2026Our certifications are reassessed on a recurring basis, not treated as a one-time checkbox.
Independently audited controls for security, availability, and confidentiality.
Certified information security management system covering our people, process, and technology.
Data processing practices aligned with EU data protection requirements.
Safeguards suitable for handling healthcare-related compliance workflows.
Need a copy of our audit report or certificate? Request it from our team →
All data is encrypted in transit (TLS 1.2+) and at rest (AES-256) across our infrastructure.
Access to customer data is limited to authorized personnel on a least-privilege basis, with mandatory MFA.
24/7 monitoring and automated alerting across our infrastructure to detect and respond to anomalies.
Code changes go through peer review, automated testing, and vulnerability scanning before release.
A documented incident response plan with defined escalation paths and customer notification commitments.
Regular encrypted backups and tested disaster-recovery procedures to protect against data loss.
How we collect and use personal data. Read policy →
Details on our SOC 2 Type II audit scope. Learn more →
The cookies we use and why. Read policy →