Security and compliance

AllSpice.io is built from the ground up to safeguard your data.

Delivering enterprise-grade security from day one

We’re engineers too and we know how critical your data is. We’ve designed our platform to meet the demands of modern hardware teams through rigorous internal practices and third-party audits.

Trust center

Explore our full set of security documentation, certifications, and policies

→ Visit our trust center
Soc 2 logo

We’re SOC 2 Type II compliant

AllSpice.io is SOC 2 Type II compliant — an external validation of our commitment to protecting customer data through strict internal controls, monitoring, and governance. We provide Fortune 500 enterprises the controls and transparency they need to meet their internal compliance checklists and IT requirements.

Learn more

Enterprise-ready authentication & access control

We make it easy for your organization to stay secure at scale.

Two-factor authentication (2FA)

Add an extra layer of protection with enforced MFA across your organization’s IP.

Single-sign-on (SSO)

AllSpice Enterprise supports industry-standard SSO protocols like OIDC (covering Azure AD, Github, Google, OKTA, and more) and LDAP (covering Active Directory, OpenLDAP, and more).

GovCloud hosting

With AWS GovCloud, we support customers with sensitive data and strict compliance needs.

Frequently asked questions

Do you work with my industry?

Can our data be self-hosted?

Do you monitor for vulnerabilities or incidents?

How often do you back up data?

Can we speak directly to your security team?

How does AllSpice handle AI data privacy?

How do you protect our data?

Where is customer data hosted?

What happens to our data if we stop using AllSpice?