Verbix AI Logo
Verbix Security & Compliance Portal

Verbix.ai Trust Center

We treat customer data as our own. This page sets out the certifications we hold, the controls we operate, the subprocessors we use, and how to obtain our audit reports.

Contact security team
Last Updated
01 September 2026
Next Review
01 July 2027
Certifications
SOC 2 Type II, HIPAA
Primary data region
US (DigitalOcean)
Security contact
info@verbix.ai
SOC 2 Type IISOC 2 Type IIHIPAA CompliantHIPAA Compliant

Security at a glance

The commitments below apply to every production environment that processes customer data.

Encryption at rest
AES-256
Encryption in transit
TLS 1.2 / 1.3
MFA coverage
100% of staff
Availability target
99.99% uptime
Penetration testing
Annual, third party
Recovery objectives
RTO 4h / RPO 1h
Security training
Annual, all staff
Backup frequency
Daily, encrypted

Certifications and attestations

Independent assessments held by the organisation. Copies of reports and certificates are available under the Documentation tab.

SOC 2 Type II

SOC 2 Type II

Attested

Report issued by independent CPA audit firm covering Security, Confidentiality, and Availability.

HIPAA Compliant

HIPAA Compliant

Compliant

Data Processing Agreement, PHI physical/technical safeguards, and Business Associate Agreements (BAA) available on request.

Reporting a security issue

If you believe you have found a security vulnerability in our products or infrastructure, report it to our security team. We acknowledge reports within two business days and will keep you updated until the issue is resolved. Please do not disclose the issue publicly until we have confirmed a fix.