.// Security & Compliance

Enterprise-Grade Certifications & Compliance

Assistents meets the most rigorous security and data protection standards, giving enterprise customers the confidence they need. Our multi-layered approach to compliance covers certifications, technical controls, AI governance, and continuous monitoring.

.// Certifications

Industry-Leading Certifications

Our platform holds the certifications enterprises require to meet regulatory and security obligations.

SOC 2 Type II

Independent audit of security, availability, and confidentiality controls. Annual recertification.

ISO 27001

International standard for information security management systems (ISMS).

GDPR Compliant

Full compliance with EU General Data Protection Regulation. Data processing agreements available.

HIPAA Ready

Technical safeguards for protected health information. BAA available for healthcare customers.

SOC 3

Public-facing trust report for service organizations.

CCPA Compliant

California Consumer Privacy Act compliance for US data subjects.

.// Technical Controls

Defense-in-Depth Data Security

Every layer of assistents' infrastructure is designed with security as a first principle.

Our platform employs industry-standard encryption, access controls, and monitoring to protect your data. Every transmission is encrypted end-to-end. Data at rest uses the strongest available algorithms. Access is restricted through role-based controls and multi-factor authentication. All actions are logged and auditable.

We support customer-managed encryption keys, allowing you to maintain full control over encryption materials. Audit logs are retained for compliance periods and can be exported for forensic analysis. Single sign-on integrations reduce friction while strengthening identity security.

AES-256 encryption at rest
TLS 1.3 in transit
Customer-managed encryption keys (BYOK)
Role-based access control (RBAC)
SSO via SAML 2.0 and OIDC
Multi-factor authentication
IP allowlisting
Audit logging with 90-day retention
.// AI Governance

Responsible AI Controls

Enterprise governance features built into every agent, ensuring security, fairness, and human oversight.

Model Governance

Control which AI models are used, set guardrails, monitor outputs

Data Isolation

Per-tenant data isolation, no cross-contamination, no training on customer data

Prompt Security

Input/output filtering, PII redaction, injection prevention

Audit Trail

Every agent action logged with user, timestamp, input, output, and decision rationale

Human-in-the-Loop

Configurable approval workflows for sensitive actions

Bias Monitoring

Continuous monitoring for output fairness and accuracy drift

.// Documentation

Compliance Documentation & Agreements

We provide the documentation your compliance, legal, and security teams need.

Security whitepaper available on request
Penetration test reports (annual, by third party)
Data processing agreements (DPA)
Business associate agreements (BAA) for HIPAA
Sub-processor list
Privacy policy and terms of service

Most documentation is available to existing customers through the admin portal. New customers and prospects can request documentation during the sales process or by contacting our security team.

Security & Compliance Questions?

Our security team is ready to discuss your compliance requirements, review our controls, and provide documentation.