Trust & Security
The MyScale platform is designed to meet the security, compliance, and privacy needs of corporate clients. As a data storage and application support provider, MyScale can be relied upon and used with confidence by your enterprise.
-
MyScale is trusted by teams and organizations like yours for a variety of reasons, including, but not limited to:
- MyScale runs on a multi-tenant Kubernetes cluster on a fully-managed and secure AWS infrastructure.
- We ensure customer data is stored in isolated containers.
- Access to your data for any reason beyond API service calls is strictly prohibited.
- MyScale exclusively monitors operational metrics to maintain system health and performance. Ultimately, we guarantee your data remains exclusively yours, not MyScale's.
Security
Data Safeguarding
MyScale prioritizes data security with robust encryption for data at rest and in transit. Stringent security measures and best
practices ensure your sensitive information remains confidential, available, and safe.
Access Management
Role-Based Access Control (RBAC) is a security framework that assigns specific roles to users, ensuring appropriate access to
data/resources, bolstering security, streamlining permissions, and enhancing our platform's robustness and efficiency.
Penetration Testing
MyScale intends to engage a professional third-party security firm for security, vulnerability, and penetration testing. These
are run at least once annually, and identified issues are remediated based on their criticality and priority.
Compliance

SOC2 Type 1
SOC 2 Type 1 audit is performed by Johanson Group LLP, based on relevant guidelines developed by the American Institute of
Certified Public Accountants (AICPA). The SOC 2 audit is one of the highest recognized standards of information security
compliance in the world. It is used to validate a service company's internal controls for information security. MyScale is SOC
2 Type 1 certified now.

GDPR
The European Union's General Data Protection Regulation (GDPR) compliance is a priority for MyScale, and we are taking all the
necessary steps to ensure that we are GDPR-ready.

ISO 27001
MyScale is ISO 27001 certified, meeting the International Organization for Standardization's rigorous standards. This
certification assures an Information Security Management System (ISMS) framework to maintain the confidentiality, integrity,
and availability of information.

CCPA
The California Consumer Privacy Act (CCPA) grants consumers control over their personal information collected by businesses,
giving them the right to know what information is collected, accessed, and shared. Their data must also be deleted upon
request. Users can rely on MyScale for support in complying with these regulations.
Reliability
Monitoring
With MyScale, customers can monitor their production environments and gain insights into cluster resource utilization.
Service
To ensure excellent service delivery, MyScale is committed to high-level support policies and service level agreements (SLAs).
For more information, please refer to Support Policy and Service Level Agreement.