IntelyChat
SOC 2 Type II · GDPR Compliant

Security at IntelyChat

Your data security is our top priority. We follow industry best practices and maintain rigorous compliance standards to keep your information safe.

TODO before this ships

Last reviewed: [add date]. Security contact: [add named owner, not "our security team"]. Trust center / downloadable SOC 2 report link: [add URL].

SOC 2 Type II Certified

We’ve met rigorous standards for information security, including strict policies and procedures to ensure the security, availability, processing, integrity, and confidentiality of user data. Your data is protected by the highest levels of security.

GDPR Compliant

We align with GDPR requirements across our product, processes, and agreements so your teams can confidently support customers in the EU and beyond. Our privacy posture covers data processing terms, access controls, and clear workflows for data subject requests.

How we protect your data

Multiple layers of security to ensure your customer data stays safe.

Data Encryption

All data is encrypted at rest and in transit using AES-256 encryption. We use AWS KMS with hardware security modules for key management.

Application Security

We use CodeQL, Secrets Scanner, and Dependabot for continuous security analysis. Our codebase is regularly audited by security experts.

Infrastructure Security

Hosted on AWS with GuardDuty, Inspector, and WAF protection. Multi-region redundancy ensures high availability and disaster recovery.

Access Control

Role-based access control, SSO/SAML support, and audit logs for all administrative actions. Two-factor authentication available for all accounts.

Data Privacy

GDPR compliant with data processing agreements available. We follow strict data protection regulations to safeguard your information.

Incident Response

24/7 monitoring with automated alerts. Dedicated incident response team with documented procedures for rapid resolution.

Have security questions?

Our security team is here to help. Reach out for security assessments, compliance documentation, or to report vulnerabilities.