SOC2C

Is this your company? Buyers are checking Mindstudio here. Claim mindstudio.ai free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Mindstudio logo

Mindstudio

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Mindstudio is SOC 2 Type II compliant. Mindstudio also holds GDPR.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

Rapidly build custom, AI-powered apps and workflows to handle any process — big or small.

Compliance & infrastructure

Hosting
AWSGCP

Subprocessors

18
  • C
    Cloudflare, Ltd. · Content delivery provider
    Dependent on processing center closest to Customer
  • A
    Amazon Web Services · Cloud infrastructure / AI inference
    United States
  • Z
    Zilliz Inc. · Cloud infrastructure
    United States
  • V
    Vercel Inc. · Cloud infrastructure
    United States
  • G
    Google Cloud Platform · Data warehouse / AI inference
    United States
  • F
    Fivetran, Inc. · ETL provider
    United States
  • I
    Intercom · Customer support
    United States
  • H
    HubSpot Inc. · Customer support
    United States
  • A
    Anthropic · AI Inference
    United States
  • O
    OpenAI · AI inference
    United States
  • P
    Perplexity · AI inference
    United States
  • M
    Mistral · AI inference
    EU
Show all 18 subprocessors
  • E
    ElevenLabs · AI inference
    United States
  • x
    xAI · AI inference
    United States
  • C
    Cohere · AI inference
    United States
  • G
    Groq · AI inference
    United States
  • I
    Ideogram · AI inference
    United States
  • D
    Deep Infra · AI inference
    United States

Compliance leadership

The person who leads Mindstudio's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Mindstudio's penetration test vendor isn't listed yet.

Claim this profile to add it.

This listing is partial

6/11 details · 55%

SOC2C shows the verified essentials. 5 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Documents
    List the documents you share (SOC 2 report, SOC 3, pen-test summary, DPA) and whether each is public or on request.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Mindstudio SOC 2 compliant?
Mindstudio is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Mindstudio GDPR compliant?
According to Mindstudio's public trust center, Mindstudio is GDPR compliant. On SOC2C this listing is Listed.
Is Mindstudio SOC 2 Type I or Type II?
Mindstudio is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.
Can I use Mindstudio's SOC 2 for a vendor risk assessment?
Yes. Mindstudio's SOC 2 status, frameworks, auditor, and renewal timing are on SOC2C for vendor risk and security reviews. Request the underlying report through SOC2C to complete your third-party risk file.
Is Mindstudio penetration tested?
Mindstudio hasn't listed its penetration testing on SOC2C yet. SOC 2 Type II programs typically include periodic third-party penetration tests; the company can add who performed theirs.

Answers published by Mindstudio

Reproduced from Mindstudio's own trust center. These are the company's statements about its security practices — SOC2C has not tested or verified them, and they may have changed since we last read the page. Check the source ↗

Are you compliant with any security standards?
MindStudio is committed to maintaining the highest standards of security and privacy. We are currently certified under SOC 2 Type I and Type II Security standards.
Who has access to the data sources used in an AI application?
Only authorized personnel within your workspace can access the data uploaded to an AI application, and all access is logged and monitored. Data sources used in building AI applications on MindStudio are vectorized and stored. No data from the data sources are used in AI training. MindStudio does not share data from data sources with third parties.
What kinds of user data types are uploaded to MindStudio?
There are four types of user data that can be uploaded to MindStudio: - Account Info: Email, username, profile picture, workspace name, and billing information. - Data Sources: Files that are uploaded when building a MindStudio application. Data sources are uploaded by the creator of an AI application when utilizing Retrieval Augmented Generation (RAG) in an application. - Runtime logs: These logs include system performance data, error reports, and usage statistics that help us monitor and improve the performance of the MindStudio platform. They do not contain any personally identifiable information. - AI user data: Data collected from the end user by the AI application. This includes any files uploaded to or information entered into the AI application by the end user, such as text inputs, images, or other documents.
Who has access to my account info?
Access to your account information is limited to authorized personnel within MindStudio who need it to provide support and maintain the platform. This includes the MindStudio customer support and billing teams. All access is logged and monitored to ensure your data is handled securely and in compliance with our Privacy Policy. MindStudio does not share your account information with third parties.
Who has access to AI user data?
AI user data is only accessible by the end user of an AI application. The creator of an AI application may enable logging within an AI application to collect AI user data for their own purposes. The creator of the AI application will not be able to view any user information without that user’s knowledge and consent. AI user data is not used for training AI models. MindStudio does not share AI user data with third parties.