SOC 2 Type II
In progress. SOC 2 attestation covering security, availability, and confidentiality trust service criteria. Audit scheduled for completion.
SECURITY
Calliope AI runs inside your perimeter, so your data never leaves the SOC 2 / HIPAA boundary you already maintain. We implement controls mapped to the frameworks your auditors care about and are actively pursuing formal certification — here's exactly where each one stands, no overstatement.
In progress. SOC 2 attestation covering security, availability, and confidentiality trust service criteria. Audit scheduled for completion.
In progress. We're implementing the required safeguards for protected health information, with a BAA available on certification. In the meantime, because Calliope AI deploys inside your perimeter, a HIPAA-obligated team can run it without Calliope itself holding the cert — PHI never leaves your existing boundary.
Controls aligned with GDPR requirements for EU data protection. Data processing agreements available. EU deployment options for data residency requirements.
Roadmap. Information security management system controls being implemented in preparation for certification.
Roadmap. Payment card industry controls for customers handling cardholder data. Not currently certified—contact us for specific requirements.
Evaluating. Federal government customers should contact us to discuss requirements and deployment options that meet federal security standards.
Stop choosing between moving fast and staying in control.
See how it works →