Security & Trust · Growth Terminal

Security

Security you can verify. Not just claim.

Encryption, access controls, audit logs, and a transparent subprocessor list. Everything your security team needs to review.

Security features

Built secure from day one.

Data isolation

Your data stays yours.

Every workspace is tenant-isolated at the row level. No cross-tenant reads. Connected-platform credentials stored encrypted and never logged.

SOC 2 Type II

Audit in progress, controls live.

Formal report expected Q3 2026. Controls are operational: access logs, change management, and incident response all meet SOC 2 requirements now.

Encryption

AES-256 at rest, TLS 1.3 in transit.

All data encrypted using AES-256 at rest. TLS 1.3 for every connection. Keys managed via AWS KMS with automatic rotation.

Access control

Role-based, fully audited.

RBAC across all accounts. Every action logged with actor, timestamp, IP, and resource. Audit logs retained 1 year.

Certifications

Where we stand. No spin.

TLS 1.3Active
AES-256Active
GDPRActive
CCPAActive
SOC 2 Type IIIn progress
DPA on requestActive

Material changes to subprocessors are communicated at least 30 days before taking effect. Last updated: May 2026.

Questions about security?

Request our security questionnaire pack, DPA, or schedule a call with our security team.