Built for regulated industries. This page provides the detail your legal and procurement teams need to evaluate our data practices.
How we collect and process social data — transparently and compliantly.
All data is collected through official platform APIs and authorized partnerships. We do not engage in unauthorized scraping or data harvesting.
Every data point in our system can be traced back to its original source. Full audit trail available for compliance review.
We only process publicly available social data. No private messages, no protected content, no PII beyond public profiles.
Choose the infrastructure model that fits your security requirements.
Data handling processes built with GDPR principles: lawful basis, data minimization, purpose limitation, and right to deletion.
Currently implementing ISO 27001 information security management system. Expected certification timeline: Q2 2028.
Member of NVIDIA's Inception program for AI startups, ensuring access to latest AI infrastructure and best practices.
| Practice | Details |
|---|---|
| Encryption at rest | AES-256 encryption for all stored data |
| Encryption in transit | TLS 1.3 for all API and web traffic |
| Access controls | Role-based access control (RBAC), MFA enforced for all team members |
| Incident response | 24-hour notification SLA for security incidents, documented IR playbook |
| Vulnerability management | Regular penetration testing, automated dependency scanning |
| Data retention | Customer-configurable retention periods; data deleted upon contract termination |
| Sub-processor | Purpose | Location |
|---|---|---|
| Amazon Web Services (AWS) | Cloud infrastructure & storage | Singapore (ap-southeast-1) |
| NVIDIA | GPU compute for AI models | US / Singapore |
| Cloudflare | CDN & DDoS protection | Global |