Security & compliance
Your data deserves the highest level of protection. We take security seriously from day one.
Certifications & standards
Controls documented
Security controls aligned with SOC 2 Type II requirements. Formal audit planned for end of 2026.
Framework adopted
Information security management following international ISO 27001 standards.
Privacy details linked
Read how we support data subject rights and protect personal data in our privacy policy.
EU infrastructure
Runs on European infrastructure. Application, database, cache and site all run in the EU. Payments and email run in the US under EU-US DPF and SCCs. See our sub-processor list.
We're committed to building a strong security foundation. As we grow, we're working towards formal certifications:
Controls
For procurement
The artifacts an evaluator asks for, and where to find each one. Public documents link straight through; the rest ship on request.
Controller-to-processor terms for client data.
On requestEvery third party that touches data, and where it runs.
PublicControls, hosting, encryption and access model: this page.
PublicDated path to SOC 2 Type II and ISO 27001.
PublicCompleted responses for procurement reviews.
On requestData & AI
If you're an agency managing client ad accounts or an enterprise with strict security requirements, we understand your needs:
Found a security vulnerability? We appreciate responsible disclosure and will work with you to address any issues promptly.
Report a vulnerabilityTake it to your security team
Read-only by default, per-account scoping, encrypted tokens and EU hosting. Start a 14-day trial and see the controls for yourself.
14-day Pro or Team trial available

Cookies on this site
We use analytics cookies to see how the site is used. They load only if you accept, and you can change your choice at any time. Read our privacy policy.