Sligo AI meets the AICPA SOC requirements for customer data management.
We fully comply with the
EU GDPR to safeguard personal data and privacy.
Sligo AI meets the international standard for information management security.
Sligo AI adheres to HIPAA requirements, ensuring protection for healthcare data.
Data at rest
All customer data, including S3 buckets, is encrypted with field-level protections. Encryption applies before data ever hits the database, preventing access to sensitive information.
Data in transit
All data in motion uses TLS 1.2+ with features like HSTS for maximum security. TLS keys and certificates are managed by AWS and deployed via load balancers.
Secret management
Encryption keys are stored in AWS KMS and secured in HSMs, preventing direct access by individuals. Application secrets are encrypted with AWS Secrets Manager and tightly controlled.
Privacy shield
Every feature is built with GDPR and global privacy frameworks in mind.
Regulatory compliance
You own your data, with clear options for access, retention, and deletion.
Privacy policy, DPA, and ISA
Built to align with major regulations and industry requirements worldwide.

