Skip to main content

Beside's SOC 2 compliance

Beside is SOC 2 Type II certified - independently audited for security, availability, confidentiality, and privacy. Your data is protected to enterprise-grade standards.

Updated today

Beside is officially SOC 2 Type II certified.

This certification reflects our ongoing commitment to protecting your data and maintaining the highest standards in security and operational practices.


What is SOC 2 Type II?

SOC 2 Type II is an industry-standard certification designed for service providers who store or process customer data. It's issued by an independent third-party auditor and confirms that Beside meets rigorous criteria in areas like:

  • Security

  • Availability

  • Confidentiality

  • Privacy

  • Processing integrity

Type II reviews how Beside maintains and enforces these controls over an extended observation period - making it a deeper and more trusted validation than a one-time audit.


Why this matters for you

SOC 2 Type II is widely recognized and trusted by businesses and IT leaders. This certification:

  • Confirms that your data is handled with care and transparency

  • Means Beside's security controls have been verified by an independent auditor over time

  • Gives you confidence when using Beside for sensitive business communications


Other security measures

In addition to SOC 2 Type II certification, Beside protects your data with:

  • Encryption in transit (TLS) and at rest (AES-256)

  • Hosting on Amazon Web Services (AWS) in the United States

  • A strict no-data-sales policy


FAQ

Can I get a copy of Beside's SOC 2 report?

SOC 2 reports are confidential documents. If you need to review the report for compliance or procurement purposes, contact your Beside account representative or reach out via the in-app chat.

Does SOC 2 mean my calls and texts are end-to-end encrypted?

No. SOC 2 certifies security controls and practices, not specific encryption methods. Beside encrypts data in transit (TLS) and at rest (AES-256) but does not use end-to-end encryption, so AI features like transcription and summaries can work.
See 📖 Is Beside end-to-end encrypted? for details.

Is Beside HIPAA compliant?

Beside is not currently HIPAA compliant. If you handle protected health information (PHI), please check with your compliance team before using Beside for those communications.

Is Beside GDPR compliant?

Beside processes data in accordance with GDPR principles where applicable. You can request access to, correction of, or deletion of your personal data by contacting [email protected].

Did this answer your question?