Trust Center

AEO Pulse är byggt med säkerhet och compliance i kärnan. Här hittar du allt du behöver för att utvärdera vår säkerhetsposition.

Compliance-status

GDPR
DPA, data export/deletion, RoPA
Compliant
CCPA
Right to know, delete, opt-out
Compliant
SOC 2
Planned Q4 2026
Planned
ISO 27001
Under consideration
Planned

Säkerhetspraxis

Encryption at Rest

All data encrypted AES-256 via Supabase Postgres default encryption.

Encryption in Transit

HTTPS/TLS 1.3 enforced via Vercel edge network.

Access Control

Row-Level Security (RLS) on Postgres + RBAC application layer.

Audit Logs

Immutable, append-only audit trail for all critical actions. Exportable.

Backups

Supabase daily snapshots. 7-day retention standard, 30-day on paid plans.

Vulnerability Disclosure

Responsible disclosure via security@aio-pulse.com.

Full security details: Security Practices →

Sub-Processors

We work with trusted third-party providers to deliver our service. All sub-processors are bound by Data Processing Agreements (DPAs).

ProviderPurposeData Location
SupabaseDatabase, Auth, StorageEU (Frankfurt)
VercelHosting & Edge NetworkEU (Frankfurt)
StripePayment ProcessingUS / EU
SentryError MonitoringUS
OpenAILLM Queries (ChatGPT)US
AnthropicLLM Queries (Claude)US
Google AILLM Queries (Gemini)US / EU
PerplexityLLM QueriesUS
UpstashRedis & Rate LimitingEU (Frankfurt)

Full list with details: View all sub-processors →

Data Processing Agreement (DPA)

Our DPA is based on the EU Standard Contractual Clauses (SCCs) and covers all data processing activities. Available for download below.

Your GDPR Rights

Under GDPR, you have the right to access, export, and delete your personal data. You can exercise these rights directly from your dashboard settings.

Right of Access (Art. 15)
Know what data we hold about you
Right to Portability (Art. 20)
Export your data in a machine-readable format
Right to Erasure (Art. 17)
Request deletion of your personal data
Right to Rectification (Art. 16)
Correct inaccurate personal data

Learn more: GDPR Rights →

Contact

Security inquiries: security@aio-pulse.com

Data Protection Officer: dpo@aio-pulse.com

Internal audit completed March 2026 (85/100). External penetration test planned Q4 2026.