Every feature below is built for security reviews and procurement checklists — expand any row for the full spec.
Our SOC 2 Type II report, DPA, and security questionnaire responses are all available to your security team under NDA.
Annual third-party audit covering security, availability, and confidentiality. Report available under NDA.
Full EU data protection compliance. DPA available. EU data residency. Right to erasure and data portability.
California consumer privacy rights. Data deletion and opt-out mechanisms in place.
BAA available for healthcare customers. PHI handling, encryption, and access controls in place.
Application security tested against all OWASP Top 10. Regular third-party penetration testing.
Your named customer success manager runs point every step of the way. No DIY docs, no 30-tab portals.
30-day pilot with a dedicated engineer. If it doesn't ship real PRs by week two, we refund the call.
oscar@getorquesta.com · SOC 2 Type II on file · DPA ready