Compliance certifications
We are actively pursuing industry-recognized compliance certifications to demonstrate our commitment to security best practices:- SOC 2 Type 1: We are currently working toward SOC 2 Type 1 certification. This report will validate our security controls and operational procedures. Once completed, the report will be available upon request.
- ISO 27001: Following SOC 2 certification, we plan to pursue ISO 27001 certification. This international standard for information security management systems will further validate our approach to data protection and security governance.
Security documentation
Layers undergoes regular third-party penetration testing. The documentation available to you depends on your plan. Standard plans- Security overview
- Data Processing Agreement (DPA)
- Infrastructure & Sub-processors list
- Standard security questionnaire responses
- Confirmation that third-party penetration testing is performed
- Confidential security documentation
- Penetration test reports and executive summaries
- Detailed control documentation
- Customer security reviews
- Additional compliance assistance, such as support completing your own vendor assessment
Security principles
Our compliance efforts are built on core security principles:- Data protection: We implement controls to prevent unauthorized access, modification, or disclosure of your data.
- System availability: We maintain infrastructure and processes designed to ensure reliable platform operation.
- Privacy: We protect the confidentiality of your information through access controls and security measures.
- Standards adherence: We follow industry best practices and work to meet regulatory requirements.