Data Encryption
In transit: All data is encrypted using TLS 1.2+ during transmission between your browser and Cloudairy servers.
At rest: Data stored on Cloudairy servers is encrypted using AES-256 encryption.
Infrastructure Security
Cloudairy is hosted on enterprise-grade cloud infrastructure with redundant systems, automated backups, and disaster recovery procedures. Our infrastructure undergoes regular security assessments and penetration testing.
Access Controls
Cloudairy supports role-based access controls (RBAC), SSO (SAML 2.0 on Business, Okta/OneLogin/Auth0 on Enterprise), multi-factor authentication, and session management.
Compliance Certifications
SOC 2 Type II: Independent audit verifying our security, availability, and confidentiality controls.
ISO 27001: International standard for information security management (Enterprise plan).
PCI DSS: Payment Card Industry Data Security Standard compliance (Enterprise plan).
GDPR: Full compliance with the European Union’s General Data Protection Regulation.
Incident Response
Cloudairy maintains a comprehensive incident response plan. In the event of a security incident, affected customers are notified promptly per our notification policy and applicable regulations.
Security Documentation
Enterprise customers can request detailed security documentation, audit reports, and compliance certificates by contacting [email protected].
