Skip to main content
Enterprise-Grade Security

Security First. Always.

We treat your infrastructure data with the same care we apply to our own. Here's how we keep it safe.

SOC 2 Type II
Annual audit
GDPR
Compliant
ISO 27001
Certified
HIPAA
Ready

How we protect your data

Encryption at Rest & In Transit

All data is encrypted using AES-256 at rest and TLS 1.3 in transit. We never store plaintext credentials.

Regular Security Audits

Quarterly independent penetration tests and annual SOC 2 Type II audits conducted by certified third-party firms.

2FA / MFA & SSO

Enforce organization-wide multi-factor authentication. SAML 2.0, OIDC, and major identity providers supported.

Role-Based Access Control

Fine-grained permissions at the organization, team, and resource level. Apply least-privilege principles easily.

Bug Bounty Program

We reward responsible disclosure. Our bug bounty program is managed on HackerOne with payouts up to $10,000.

Data Residency

Choose your data region — US, EU, or APAC. Your data never leaves your selected region without your explicit consent.

Certifications & Compliance

Our compliance posture covers the most rigorous standards in the industry. Download our security documentation or request our Data Processing Agreement (DPA).

SOC 2 Type II Report
Available under NDA
Privacy Policy
Last updated Feb 2026
Data Processing Agreement
GDPR Article 28 compliant
Penetration Test Summary
Q4 2025 by Cobalt.io

Audit log details

23:59:01user.login[email protected]
23:57:44alert.create[email protected]
23:55:12monitor.updateapi-key-prod
23:51:03team.invite[email protected]

Responsible Disclosure

Found a security vulnerability? We take all reports seriously and respond within 24 hours. We'll credit you in our Security Hall of Fame.

Security FAQ