Third Party Index

Snapshot 19132

Document
Security page
URL
https://www.hypatos.ai/security
Fetched
HTTP status
200
Content type
text/html; charset=utf-8
Fetch mode
static
Size
51712 bytes
SHA-256 (raw)
7772457b3fc816e51ba02d765c013267f615478ceac4b50d59029880ddd2884c
SHA-256 (normalized text)
43a17101c0dbea9dd545c0317db116a092fd8fdf57fb3896b361a93812a9a55d

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Security at Hypatos
Protecting the data of our customers is our utmost priority at Hypatos. We have implemented a comprehensive set of security best practices to meet the highest industry standards and ensure the confidentiality, integrity, and availability of our platform.
See our Trust CenterLearn more
Our approach
Independent Security Team
Demonstrating commitment to prioritizing and investing in robust security measures, Hypatos has established an independent security team, reporting directly to the CEO, to develop, implement, and maintain our security program. The team also collaborates closely with our customers, ensuring their specific security requirements are met, and provides guidance and best practices to our engineering and product teams.
Certified & Acknowledged
Compliance
Hypatos is independently certified to SOC 2 Type 2, ISO 27001, ISO 27017, ISO 27018, and BSI C5, and is compliant with HIPAA and GDPR.
In addition, our cloud services are part of the Security, Trust, Assurance, and Risk (STAR) Level 1 Registry, developed by the Cloud Security Alliance (CSA), and Hypatos maintains its own version of the Consensus Assessments Initiative Questionnaire (CAIQ). The CAIQ is an industry-accepted format to document implemented security controls in cloud services, thereby promoting transparency and helping prospects and customers evaluate the security posture of SaaS providers.
All audit reports and certificates are available in our Trust Center.
Open Trust Center
Following Security Best Practices
Data Encryption
All customer data is encrypted through industry-accepted standards: AES 256 for data at rest and TLS 1.2 or higher for data in transit.
Verified application security
Annual Penetration Testing
We perform third-party penetration testing at least on an annual basis, which covers the top 10 security risks listed by the Open Web Application Security Project® (OWASP). Summary penetration test reports are available via our Trust Report.
Aligned to OWASP best practices
Developing secure applications
At Hypatos, we prioritize security in AI development by aligning with the OWASP Top 10 Risks for LLM Applications 2025 guidelines. Our approach ensures robust protection against emerging threats, safeguarding data integrity and user privacy.
Learn more about Security at Hypatos
Check out our Trust Center
Proceed to the Trust Center
Do you have a question?
Don’t hesitate to contact our security team on [email protected]