Compliance

Compliance & Certifications

Meeting the highest standards for security, privacy, and regulatory compliance

SOC 2 Type II

Certified

Independently verified security controls and processes

GDPR Compliant

Compliant

Full compliance with European data protection regulations

ISO 27001

In Progress

International standard for information security management

HIPAA Ready

Available

Healthcare data protection safeguards available

Our Compliance Framework

Tael maintains a comprehensive compliance program that ensures we meet the regulatory requirements of industries we serve while protecting customer data and maintaining operational excellence.

Data Protection Regulations

GDPR (General Data Protection Regulation)

We comply with GDPR requirements for processing personal data of EU residents, including data subject rights, consent management, and breach notification procedures.

CCPA (California Consumer Privacy Act)

We honor California residents' privacy rights including the right to know, delete, and opt-out of the sale of personal information.

Industry Standards

  • SOC 2 Type II annual audits for security, availability, and confidentiality
  • ISO 27001 information security management system implementation
  • NIST Cybersecurity Framework alignment
  • Regular penetration testing and vulnerability assessments

Specialized Compliance

HIPAA

Healthcare customers can leverage our HIPAA-ready infrastructure with appropriate business associate agreements and additional safeguards.

PCI DSS

Payment processing workloads can be deployed in our PCI-compliant environment with appropriate configurations and monitoring.

Audit and Reporting

We provide customers with:

  • Annual SOC 2 Type II reports
  • Security questionnaire responses
  • Compliance documentation and evidence
  • Custom audit support for enterprise customers

Contact Our Compliance Team

For compliance questions, audit requests, or certification documents, please contact our compliance team at compliance@tael.io.