Security & Trust
How Auralis protects your data.
Certifications & compliance
Auralis is built to meet the standards our customers rely on.
Last updated: July 8, 2026
Our approach to security
Security is foundational to how we build and operate Auralis. We protect customer data with layered technical and organizational controls, and we design our systems so that access to your data is limited, logged, and encrypted.
Data encryption
All data is encrypted in transit using TLS 1.2 or higher. Data at rest is encrypted using industry-standard AES-256 encryption, so your information is protected both while moving between systems and while stored.
Infrastructure
Auralis runs on Amazon Web Services (AWS), a SOC 2 and ISO 27001-certified cloud provider. We build on AWS's physical, network, and environmental controls, with redundancy and monitoring to keep the platform available and resilient.
Access controls
Access to production systems and customer data is restricted to authorized personnel on a least-privilege basis, protected by strong authentication, and monitored. We grant internal access only where it is required to operate and support the service.
Privacy and compliance
We process personal data in line with the GDPR and the CCPA. Our Privacy Policy explains what we collect, how we use it, and the rights available to you. A Data Processing Agreement (DPA) is available to customers on request.
Data retention
We retain personal data only for as long as necessary to provide the service and to meet our legal obligations, in accordance with our data retention policy.
Reporting a vulnerability
If you believe you have found a security vulnerability, email security@auralis.ai and we will respond promptly. We appreciate responsible disclosure and will work with you to validate and address the issue.




