SECURITY

Built for funds that get audited quarterly.

SOC 2 Type II, encryption at rest and in transit, tenant isolation, and the only relationship platform with jurisdiction gates built into every LP profile.

SOC 2 TYPE IIGDPRCCPAISO 27001SEBI AIFAIFMD

Data isolation

Every workspace is tenant-isolated. Your LP graph, warm paths, briefings, and pipeline never touch another customer's data. Ever.

  • ◆Postgres row-level security per tenant
  • ◆Encryption keys unique per workspace
  • ◆No cross-tenant analytics — even internal

Encryption

AES-256 at rest. TLS 1.3 in transit. Envelope encryption for sensitive PII (LP contact info, meeting notes, private connections).

  • ◆AWS KMS for key management
  • ◆Rotation every 90 days
  • ◆HSM-backed keys on Advisory tier

Access & audit

SSO (SAML + OIDC), SCIM provisioning, role-based permissions down to the LP-record level. Full audit log exported to your SIEM.

  • ◆SSO required on Advisory
  • ◆SCIM for automated deprovisioning
  • ◆JSON audit log · Splunk / Datadog compatible

Jurisdiction gates

The only relationship platform where SEBI AIF, LRS, AIFMD, and SEC Reg D gates fire before outreach. Every acknowledgement logged with user, timestamp, and jurisdiction.

  • ◆Configurable per-workspace
  • ◆Legal-team approval workflows
  • ◆Exportable compliance log for audit
Data residency

Your data lives where you need it.

US · us-east-1
Default
EU · eu-west-1
India · ap-south-1
APAC · ap-southeast-1

Advisory + Enterprise plans include region pinning. All plans include cross-region backup + disaster recovery.

Trust resources

SOC 2 Type II report
Latest report · updated Q2 2026
Request under NDA →
Data Processing Addendum
DPA + SCCs · GDPR + UK GDPR
Download PDF →
Security overview
Architecture, controls, subprocessors
View trust center →
Fundlinx · Security · Fundlinx