Certifications & Attestations
Independently Verified
Our security program is validated by independent third-party auditors against the most rigorous industry standards.
π
SOC 2 Type II
Service Organization Control 2
Independently audited for security, availability, processing integrity, confidentiality, and privacy across all trust service criteria.
π
ISO 27001
Information Security Management
Certified information security management system covering risk assessment, access controls, incident response, and continuous improvement.
π
ISO 27701
Privacy Information Management
Extension to ISO 27001 that establishes a Privacy Information Management System (PIMS) for handling personally identifiable information.
β‘
SOC 3
General Use Report
Publicly available attestation report summarizing the results of our SOC 2 Type II audit β available for download without NDA.
πΊπΈ
NAIC Compliance
Insurance Data Security Model Law
Full compliance with the NAIC Insurance Data Security Model Law (MDL-668) adopted across all operating states.
π
CCPA / CPRA
California Consumer Privacy Act
Full compliance with CCPA/CPRA requirements including consumer rights management, data inventory, opt-out mechanisms, and data processing agreements.
π
GDPR
General Data Protection Regulation
GDPR-ready data processing with lawful basis documentation, DPIAs, cross-border transfer safeguards, and data subject rights automation.
π₯
HIPAA
Health Insurance Portability & Accountability
HIPAA-compliant safeguards for any protected health information processed through our workers' compensation and employee benefits lines.