SOC2C

Reddy security & compliance

An overview of Reddy's security posture — compliance, penetration testing, subprocessors, and data handling — verified on SOC2C (Listed).

SOC 2 statusSOC 2 Type II · Listed
FrameworksSOC 2 Type II, HIPAA, PCI DSS, GDPR
Penetration testNot listed
Subprocessors9 listed
HostingAWS, GCP, Azure
Trust centerView

Security questions about Reddy

Is Reddy secure?
Security isn't a single yes/no, but Reddy is SOC 2 Type II compliant and holds SOC 2 Type II, HIPAA, PCI DSS, GDPR. SOC2C verifies its compliance posture and shows how strongly each fact is proven.
Does Reddy have a bug bounty or vulnerability disclosure program?
Reddy hasn't listed a bug bounty or vulnerability disclosure program on SOC2C. Many companies accept security reports at security@reddy.io or via a /security page (Reddy lists a security contact).
Who are Reddy's subprocessors?
Reddy lists 9 subprocessors on its trust center, including Google Cloud Platform, Microsoft Azure, Anthropic, Deepgram, ElevenLabs. Buyers use this for fourth-party risk review.
Where does Reddy host or store data?
Reddy hosts on AWS, GCP, Azure. Data residency details are on its trust center.
Where is Reddy's trust center or security page?
Reddy's trust center is at https://trust.reddy.io. Its verified SOC 2 status, frameworks, and documents are summarized on its SOC2C profile.

See Reddy's full SOC 2 profile →