Security You Never Have to Second-Guess
Tracelight is built on a foundation of security, privacy, and compliance. We handle some of the world's most sensitive financial information, and our security architecture reflects that responsibility.
Secure from day one
Tracelight was developed with some of the most security-conscious customers in the world. From the beginning, it has been built with strict processes and data boundaries for enterprise use.
No Retention
For enterprise, all spreadsheet data is deleted from our systems immediately post-processing. We have contractual zero data retention agreements in place with our AI partners.
Zero Training on Enterprise Data
Your data is never used to train our models, or any third-party models.
End-to-End Encryption
We protect your data at every stage. All information is secured with industry-standard TLS encryption in transit and AES-256 encryption at rest, ensuring it is unreadable to unauthorized parties.
Secure by Design
Our platform is architected with strict data boundaries and access controls. We build security into our development lifecycle—from initial design to deployment—to protect your work and ensure the integrity of your models.
Single Sign-on
Integrate with your identity provider via SAML 2.0 (Okta, Microsoft Entra ID) to enforce your own security policies, like Multi-Factor Authentication (MFA), and centrally manage user access.


In Progress
In Progress
Compliant with Industry Standards
Tracelight is SOC2 Type 1-certified, with Type 2 certification due in September. We are compliant with ISO27001 and GDPR standards and will be certified in the coming months.