Skip to main content
WiseRegent

Trust Center

Governance you can trust — starting with ours.

Security, data residency, compliance, and responsible disclosure — everything you need to evaluate and trust WiseRegent as your AI governance infrastructure.

Independently verified security posture

SOC 2 Type II

Issued by AICPA

Security, Availability, Confidentiality — audited annually

ISO 27001

Issued by BSI

Information Security Management System

GDPR

Issued by EU

Compliant data processing — DPA available on request

CCPA / CPRA

Issued by CA

California Consumer Privacy Act compliant

CSA STAR L2

Issued by CSA

Cloud Security Alliance Level 2 certified

Pen-tested

Issued by Annual

Independent penetration test — latest: Q1 2026

Audit reports available to enterprise customers under NDA. Request access →

Architecture

Your data. Your cloud. Your region.

Single-tenant VPC deployment

Every Enterprise customer gets a dedicated, isolated deployment in their own AWS, Azure, or GCP account. No shared compute, no shared storage.

Custom data residency

Choose any supported region. Your governance metadata, policy rules, and audit logs stay in your chosen geography — always.

Zero training on your data

WiseRegent processes governance metadata only. Your raw model weights, training data, and inference inputs never reach our systems.

Encryption everywhere

AES-256 encryption at rest. TLS 1.3 for all data in transit. BYOK (bring-your-own-key) available on Enterprise plans.

Supported deployment regions

United States

us-east-1 (N. Virginia)

us-west-2 (Oregon)

Europe

eu-west-1 (Ireland)

eu-central-1 (Frankfurt)

Asia Pacific

ap-south-1 (Mumbai, India)

ap-southeast-1 (Singapore)

Additional regions available on request.

Third-party services we use

ProviderPurposeLocationData processed
Amazon Web ServicesPrimary cloud infrastructureUS, EU, APCustomer's chosen region
CloudflareCDN, DDoS protectionGlobal edgeMetadata only (no PII)
DatadogInfrastructure monitoring & loggingUSMetrics, logs (no model data)
SendGrid (Twilio)Transactional emailUSEmail address only
StripePayment processingUSPayment data (PCI DSS)
IntercomCustomer support chatUSSupport conversation data

Subprocessor list updated as of July 2026. Customers are notified of changes 30 days in advance.

Found a security issue?

We take security seriously and appreciate responsible disclosure from the security research community. If you believe you have found a vulnerability in WiseRegent, please contact us privately before public disclosure.

Emailsecurity@WiseRegent.com
PGP keyAvailable at /security.asc
Response SLA72 hours for initial acknowledgement
Bug bountyProgramme coming Q3 2026