Is OtterlyAI ISO-27001 or SOC-2 compliant?
OtterlyAI takes the security and privacy of your data seriously. Our platform is designed with enterprise-grade safeguards and industry best practices to ensure your information is protected at every step.
SOC-2 Compliance
SOC-2 is an auditing standard that assesses a service provider’s ability to securely manage data to protect the interests of its customers and their privacy. OtterlyAI operates according to SOC-2 principles across the following areas:
- Security: All systems are protected against unauthorized access.
- Availability: The service is consistently available as committed in our SLAs.
- Confidentiality: Sensitive data is protected through encryption and strict access policies.
Our SOC-2 Type II audit is an item on our roadmap but no date has been set.
Current Security Measures
While certification is pending, OtterlyAI has already implemented:
- End-to-end encryption for data at rest and in transit.
- Role-based access controls and least-privilege permissions.
- Regular third-party penetration testing.
- Continuous monitoring and logging for security events.
- GDPR and CCPA compliance for data privacy.
What this means for you
You can trust that OtterlyAI is built on strong security foundations. We are committed to transparency and will update this page as soon as the audits are complete.