Your conversations are secure with us
Rafiki AI is SOC 2 Type 1 Certified. Enterprise-grade security, compliance, and data protection for every conversation.
Enterprise-grade security at every layer
SOC 2 Type 1 Certified
Rafiki AI is SOC 2 Type 1 Compliant. SOC 2 evaluates the design and operating effectiveness of controls that meet the AICPA's Trust Services Principles criteria.
Product Security
Rafiki AI supports SAML 2.0 and uses OAuth2 standard authorization. Client data is stored on resilient storage replicated across data centers.
Data Security
User data is automatically encrypted using Advanced Encryption Standard (AES) 256, a secure symmetric-key encryption standard.
Operational Security
Rafiki AI partners with Google Cloud Platform (GCP) for world-class data center security with electronic surveillance and multi-factor access control.
Application Monitoring
Entire site constantly monitored with built-in anomaly detection. Web service uptime continuously monitored for denial of service incidents.
Secure SDLC
Peer code reviews, OWASP-based security framework, code analysis tools, and extensive QA testing mandated across the development lifecycle.
How we keep your data safe
Threat & Vulnerability Detection
- Entire site constantly monitored
- Built-in anomaly detection
- Web service uptime continuously monitored for denial of service incidents
- Annual external penetration testing
- Regularly tested for vulnerability threats
Data Protection
- Encryption at rest (AES-256)
- Encryption in transit (TLS)
- Single-sign on (SSO)
- Role-based access controls
- Logging, auditing and monitoring features
- Features to enhance privacy of personal data
Secure Development Process
- Peer code reviews
- Robust security framework based on OWASP standards
- Code changes screened with code analyzer tools
- Functional, unit and extensive QA testing
- Adherence to secure coding guidelines
- Clearly documented change control process
Compliance & Privacy
- SOC 2 Type 1 compliant
- GDPR-ready data handling
- Data residency options
- Regular third-party security audits
- Transparent data processing policies
- Customer data deletion upon request
Ready to get started?
Join thousands of revenue teams using Rafiki AI to close more deals. Free trial, no credit card required.