SOC2C

Is this your company? Buyers are checking Reddy here. Claim reddy.io free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Reddy logo

Reddy

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Reddy is SOC 2 Type II compliant. Reddy also holds HIPAA, PCI DSS, and GDPR.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

Reddy is an AI-powered Agent Operating System that transforms enterprise CX (Customer Experience) teams. Reddy combines hyper-realistic simulation training, live call assistance, and AI‑driven post‑call quality assurance. It accelerates onboarding, boosts agent performance, and ensures compliance, all while enabling seamless collaboration across L&D, QA, and ops teams.

Compliance & infrastructure

Hosting
AWSGCPAzure

Subprocessors

9
  • G
    Google Cloud Platform · Cloud provider
  • M
    Microsoft Azure · AI / ML Services
  • A
    Anthropic · AI / ML Services
  • D
    Deepgram · Speech Processing
  • E
    ElevenLabs · Speech Processing
  • A
    AWS Polly · Speech Processing
  • S
    Smartlook · Customer Support
  • S
    Sentry · Application Monitoring
  • C
    Cloudflare · Security / CDN

Compliance leadership

The person who leads Reddy's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Reddy's penetration test vendor isn't listed yet.

Claim this profile to add it.

This listing is partial

6/11 details · 55%

SOC2C shows the verified essentials. 5 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Documents
    List the documents you share (SOC 2 report, SOC 3, pen-test summary, DPA) and whether each is public or on request.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Reddy SOC 2 compliant?
Reddy is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Reddy HIPAA compliant?
According to Reddy's public trust center, Reddy is HIPAA compliant. On SOC2C this listing is Listed.
Is Reddy PCI DSS compliant?
According to Reddy's public trust center, Reddy is PCI DSS compliant. On SOC2C this listing is Listed.
Is Reddy GDPR compliant?
According to Reddy's public trust center, Reddy is GDPR compliant. On SOC2C this listing is Listed.
Is Reddy SOC 2 Type I or Type II?
Reddy is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.

Answers published by Reddy

Reproduced from Reddy's own trust center. These are the company's statements about its security practices — SOC2C has not tested or verified them, and they may have changed since we last read the page. Check the source ↗

Where can I find information about Reddy's uptime and downtimes?
We recommend checking out our Status Page: https://status.reddy.io/. This will give you the ability to subscribe for updates, view uptimes, be informed of any outages, and view historical data.
Where is my data stored with Reddy?
Your data in Reddy is stored on secure servers within our cloud environment. By default, we host data in the United States in trusted data centers operated by Google Cloud Provider (GCP). All data remains within our controlled environment; we do not offload customer data to unknown third parties. If you have specific data residency requirements, Reddy can support regional hosting requests.
What data does Reddy collect, and is it used to train AI models?
Reddy only collects data that is necessary to provide our service—such as simulation interactions, performance metrics, and transcripts needed for training and assisting your agents on live calls. We do not use your company’s data to train our general AI models or share it with other customers. Your data is isolated to your organization’s use of Reddy and is never mingled or reused externally. In addition, we minimize sensitive personal information in our system. Reddy does not require storing highly sensitive data like credit card numbers or government IDs for our simulations or analytics. We focus on operational data (e.g. QA scores, conversation content) and do not retain regulated personal data whenever possible . This means your data remains under your control and is only used to serve your team’s training and performance needs.
Who can access my data at Reddy, and how is access controlled?
Access to customer data within Reddy is highly restricted and monitored. Only a small number of authorized Reddy personnel — those who need access to support your account or maintain the system — can reach customer data, and only with management approval and on an as-needed basis. We have robust internal controls: all employees must use company SSO credentials with MFA to access our systems, and permissions are limited by role (principle of least privilege) . Administrative access to production databases or servers is logged and audited, so every action is tracked. We also require strict confidentiality agreements with our staff and provide regular security training so that everyone understands how to handle customer data responsibly.
What security certifications and compliance standards does Reddy meet?
Reddy maintains rigorous security and privacy compliance. We are SOC 2 Type II attested and have achieved HIPAA and PCI DSS compliance to protect sensitive data. We also adhere to global data protection regulations like GDPR and CCPA, ensuring our practices meet international standards for privacy . These certifications and frameworks demonstrate Reddy’s commitment to keeping your data secure and compliant with industry requirements.

Business & Industrial peers that completed SOC 2