Snapshot 29909
Normalized text
Scripts and page chrome removed; this is what change detection compares.
Compliance at a glance ✓ SOC 2 Type II Independently audited. Report available on request, under NDA. ✓ TX-RAMP Certified for Texas public-sector procurement readiness. ✓ We never train on your data Your data is never training data, and never sold. ✓ DPA available A Data Processing Addendum is available for enterprise procurement. ✓ Authentication enforced Unique account authentication for every account, with production access restricted to authorized personnel. Certifications Audited. Authorized. Verifiable. We claim only the certifications we hold and can prove. Two of them, both independently verified. Certified SOC 2 Type II Independently audited controls for security, availability, and confidentiality, tested over time rather than at a single point. Our SOC 2 Type II report is available on request, under NDA. Authorized TX-RAMP Certified under the Texas Risk and Authorization Management Program, the state framework for cloud security, so public-sector teams can procure with confidence. Our full security posture lives in our Trust Center, where the TX-RAMP certificate is available and the SOC 2 Type II report can be requested under NDA. Our data commitment We never train on your data. Your tracked bills, briefs, searches, and team activity belong to you. They are never used to train AI models, never mixed across organizations, and never sold. The intelligence on your screen comes from the public government record, not from your work. See exactly how we handle data Data handling & AI How your data is handled. Built for teams who answer to procurement, legal, and a board. Here is what happens to your data inside USLege. Ownership Your data is yours You retain full ownership and control of your content. Request deletion in writing and we delete your data within 60 calendar days, except where law requires retention, in routine backups, or in de-identified form. AI data use Never training data Content you bring into USLege, and your inputs to AI features, are never used to train models and are not retained for training. Privacy Never sold, never shared We do not sell or share your personal information, in line with the CCPA. Access & authentication Only the right people, only the right access. Authentication and access controls sized for enterprise government affairs teams. Authentication Account authentication enforced Unique account authentication is enforced for every account. No feature gates and no forced upgrades. Enterprise SSO via SAML, OIDC and Microsoft Entra ID; talk to our team about getting set up with your identity provider. Permissions Production access restricted Access to production and to customer data is restricted to authorized personnel on a least-privilege basis. Keys Encryption key access restricted Access to encryption keys is restricted and controlled, a published control in our SOC 2 program. Infrastructure & hosting Resilient by design. The platform behind the largest transcribed government video archive in the world, built to stay secure and stay up. Hosting Enterprise cloud USLege runs on enterprise cloud infrastructure, covered by the controls independently audited in our SOC 2 Type II program. Encryption Encrypted in transit and at rest Customer data is encrypted in transit and at rest, and data transmission is encrypted end to end. Monitoring Tested and monitored Controls are continuously monitored, with live status published in our Trust Center and real-time uptime at status.uslege.ai. Continuity Backups and recovery Automated backups and a disaster-recovery plan keep your data available. Response Incident response A formal incident-response process, with prompt, transparent notification if an event affects your data. Retention Retention and deletion Clear data retention and deletion practices, with deletion on request when you close your account. Privacy & legal The documents your procurement team needs. Legal Terms of Service What governs your use of the Service, including licensing, data use commitments, and dispute resolution. Read the Terms Legal Privacy Policy What we collect, why, who we share it with, how long we keep it, and how to exercise your rights. Read the Privacy Policy Compliance Trust Center Live certifications and controls, the TX-RAMP certificate, and the SOC 2 Type II report on request under NDA. Open the Trust Center Uptime System Status Real-time uptime and incident history across the application, legislative data, AI, and alerts. View system status Need a Data Processing Addendum for procurement? Email support@uslege.ai or ask your account manager and we will send it over. Security · Frequently asked The questions your security team will ask. Is USLege SOC 2 Type II certified? Yes. USLege holds SOC 2 Type II certification and TX-RAMP authorization. Our SOC 2 Type II report is available on request, under NDA. Our full security posture lives in our Trust Center, where the TX-RAMP certificate is available. Does USLege train AI on my data? No. USLege never trains on customer data. Your tracked bills, briefs, searches, and team activity are never used to train AI models, never mixed across organizations, and never sold. Does USLege sell or share my data? No. USLege does not sell or share your personal information, in line with the California Consumer Privacy Act. Request deletion in writing and we delete your data within 60 calendar days, except where law requires retention, in routine backups, or in de-identified form. Can I get a Data Processing Addendum (DPA)? Yes. A Data Processing Addendum is available for enterprise procurement. Email support@uslege.ai or ask your account manager and we will send it over. Is USLege data encrypted? Yes. Customer data is encrypted in transit and at rest, and data transmission is encrypted end to end. USLege runs on enterprise cloud infrastructure covered by our SOC 2 Type II program. Does USLege support single sign-on? Unique account authentication is enforced for every account, and production access is restricted to authorized personnel. No feature gates and no forced upgrades. Enterprise SSO via SAML, OIDC and Microsoft Entra ID; talk to our team about getting set up with your identity provider. Does USLege keep a subprocessor list? Our data processors include Stripe for billing and Google Analytics for site analytics, as described in our Terms and Privacy Policy. How do I report a security concern? Reach our team at support@uslege.ai. We take every report seriously and respond promptly. Trusted by Fortune 500 teams, law firms, and government Security should be your fastest yes. Send us your security questionnaire or sit down with our team for a review. We answer fast, so security clears the deal instead of stalling it. Book a demo → See our full posture in the Trust Center