🛡️ Enterprise-Grade Security

Trust Center

Security, privacy, and compliance are at the core of everything we build. Learn about our practices and commitments.

🔐

SOC 2 Type II

Certified for security, availability, and confidentiality

✓ Certified
🏥

HIPAA

Compliant for healthcare data with BAA available

✓ Compliant
🇪🇺

GDPR

Full compliance with EU data protection regulations

✓ Compliant
📋

ISO 27001

International standard for information security

✓ Certified

Our Security Pillars

🔒

Data Security

Your data is protected with industry-leading encryption and access controls at every layer.

  • AES-256 encryption at rest
  • TLS 1.3 encryption in transit
  • Hardware security modules (HSM)
  • Regular penetration testing
👁️

Privacy

We're committed to protecting your privacy and giving you control over your data.

  • No training on customer data
  • Data residency options
  • Data deletion on request
  • Transparent data practices
⚙️

Reliability

Built for enterprise-grade reliability with high availability and disaster recovery.

  • 99.9% uptime SLA
  • Multi-region redundancy
  • Automated backups
  • Incident response plan

Data Handling Practices

🚫

No Model Training on Your Data

Your API requests and data are never used to train our models. Your data remains yours.

⏱️

30-Day Log Retention

Request logs are automatically deleted after 30 days. Enterprise customers can customize retention.

🗑️

Right to Deletion

Request deletion of your data at any time. We'll remove it from all systems within 30 days.

📍

Data Residency

Enterprise customers can choose where their data is processed and stored (US, EU, or Asia).

Frequently Asked Questions

Do you use my data to train AI models?

No. We never use customer data or API requests to train our models. Your data is only used to provide the service you requested and is never shared with third parties.

How long do you retain my data?

By default, we retain API request logs for 30 days for debugging and abuse prevention. Enterprise customers can customize retention periods or opt for zero-retention.

Can I get a BAA for HIPAA compliance?

Yes. We offer Business Associate Agreements (BAAs) for healthcare organizations. Contact our sales team to discuss HIPAA-compliant deployments.

Where is my data processed?

By default, data is processed in our US data centers. Enterprise customers can choose specific regions including EU and Asia-Pacific for data residency requirements.

Security Documents

Have Security Questions?

Our security team is here to help you understand our practices and meet your compliance requirements.

Contact Security Team →