Security & Compliance at a Glance
Welcome to our Trust Center. We are committed to maintaining the highest standards of security and compliance to protect your data.
We believe security is foundational—not an afterthought. Our platform leverages AES-256 encryption, SOC 2 Type II certification in progress, and GDPR-aligned practices. For our European customers, we offer EU-only hosting to meet regional compliance requirements.
For security concerns: security@ai-bi.com
AES-256
Encryption at Rest
TLS 1.2+
Encryption in Transit
PII
Encryption
RBAC + MFA
Access Controls
Certifications & Compliance
Updated April 2026SOC 2 Type II
Service Organization Control 2 Type II report examining the operational effectiv...
GDPR
General Data Protection Regulation compliance for EU personal data protection.
Security & Privacy Details
Subprocessors
We use the following subprocessors to deliver our services:
- Vultr - Cloud infrastructure and hosting
- Runpod Secure Cloud - AI/ML infrastructure
- Microsoft 365 (M365) - Productivity and communication
- GoDaddy - Domain management
All subprocessors are bound by data processing agreements and maintain appropriate security certifications.
Security Practices
Data Encryption
All customer data is encrypted at rest using AES-256. Additionally, personally identifiable information (PII) receives an extra layer of protection through application-level encryption, ensuring granular security for your most sensitive data.
Compliance
We are currently pursuing SOC 2 Type II certification and maintain GDPR-aligned practices for data protection.
Access Controls
We implement role-based access controls (RBAC) and multi-factor authentication (MFA) for all user accounts.
Infrastructure
Our infrastructure is hosted on Vultr with enterprise-grade security features including physical data center security.
Backups
We perform daily encrypted backups to ensure your data can be restored if needed.
Data Handling
Data Residency for European Customers
For our European customers, we offer EU-only hosting—all data is stored and processed within the European Union to meet regional compliance requirements and GDPR obligations.
Data Collection
We collect only the data necessary to provide our services.
Data Storage
Data is encrypted at rest using AES-256 and stored in secure EU data centers.
Data Retention
Data is retained only for as long as necessary to fulfill the purposes for which it was collected.
Data Deletion
Upon request or contract termination, customer data is securely deleted.
Get in Touch
Have questions about our security practices or want to report a vulnerability?
Security Team
For security-related inquiries:
Email: security@ai-bi.com
Vulnerability Disclosure
To report a security vulnerability, please email: security@ai-bi.com