At Cooper.ai, we take the security and confidentiality of our customers’ data seriously. Our platform is built with enterprise-grade security and privacy controls at every level.
Data Encryption
- All data is encrypted in transit (TLS 1.2+) and at rest (AES-256).
- Credentials and API keys are stored using secure hashing and key management practices.
Access Controls
- Role-based access control (RBAC) and least-privilege principles govern access to customer data.
- All production access is logged, monitored, and requires multi-factor authentication.
Infrastructure & Monitoring
- Hosted on secure, industry-standard cloud infrastructure (e.g., AWS, Azure, or GCP).
- Continuous monitoring for vulnerabilities, intrusion attempts, and system performance.
Compliance & Audits
- We align with SOC 2 Type II and ISO 27001 frameworks for information security management.
- We undergo regular third-party audits and penetration testing.
Data Privacy
- Cooper.ai does not use customer data to train public or general AI models.
- Customer data is logically isolated and retained only as long as necessary to deliver contracted services.
Incident Response
- We maintain a formal Incident Response Plan to detect, contain, and remediate security events promptly.
- Clients are notified of any data breaches in accordance with applicable laws.
Responsible Disclosure
We welcome security researchers to report vulnerabilities responsibly. If you believe you’ve found a security issue, please email info@cooper.ai.