Trust
Security & Privacy.
How Spiral protects your customer conversations: compliance, PII redaction, encryption and access control.

SOC 2 Type II
Independently audited
01Compliance
SOC 2 Type II Certified
We maintain SOC 2 Type II certification, demonstrating our commitment to the highest standards of security, availability, processing integrity, confidentiality, and privacy.
Need our SOC 2 Type II report?Talk to us02Privacy
PII Detection and Redaction
Detection and redaction of personally identifiable information (PII) runs at ingestion and is configurable per data source. Supported identifiers include:
- Email addresses and phone numbers
- Personal names and addresses
- Credit card numbers and financial data
- Social security numbers and government IDs
03Encryption
End-to-End Encryption
All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption. Your data is protected with enterprise-grade security measures.
- In transit
- TLS 1.3
- At rest
- AES-256
04Access
Access and data residency
Access control
Roles, plus Scope Keys for row-level access to conversation data.
Data regions
Data regions in the US, UK and EU.
Questions for your security review?
Talk to us, or read our Privacy Policy and Terms of Use.