Trust Center - Security & Compliance

Security & Compliance
Valiyou is committed to protecting your data with industry-leading security measures and compliance standards.ISO 27001 Certified
GDPR Compliant
Enterprise SSO
Data Privacy
What We Protect
Your Data Security
- Encryption: All data encrypted in transit (TLS 1.3) and at rest (AES-256)
- Access Controls: Role-based access control with granular permissions
- Audit Logs: Complete audit trail of all data access and modifications
- Backups: Daily automated backups with point-in-time recovery
- Infrastructure: Hosted on secure cloud infrastructure (Vercel, Supabase)
Privacy Commitment
- No Data Selling: We never sell or share your data with third parties
- Data Ownership: You own your data and can export or delete it at any time
- Minimal Collection: We only collect data necessary to provide our services
- Transparent Processing: Clear documentation of how we process your data
Compliance Standards
- ISO 27001: Information Security Management certified
- GDPR: Full compliance with EU data protection requirements
- Data Processing Agreement: Available for enterprise customers
- Regular Audits: Third-party security audits and penetration testing
Evidence & Verification
Access our security and compliance documentation for vendor assessments and due diligence:ISO 27001 Certificate
SOC 2 Type II Report
Data Processing Agreement
Subprocessor List
Enterprise Features
Single Sign-On (SSO)
Enterprise customers can enable SSO for centralized authentication:- SAML 2.0 support
- OAuth 2.0 / OpenID Connect
- Integration with Azure AD, Okta, Google Workspace
- Automated user provisioning
Advanced Security
- IP Whitelisting: Restrict access to specific IP ranges
- 2FA Enforcement: Require two-factor authentication for all team members
- Session Management: Control session timeouts and concurrent sessions
- API Security: Secure API access with key-based authentication
Compliance Documentation
Need compliance documentation for your organization?- Security Questionnaires: Contact us for completed security questionnaires
- Data Processing Agreement (DPA): Available for enterprise customers
- SOC 2 Type II: Report available upon request
- Penetration Test Reports: Available for enterprise customers
Contact Security Team
For security-related questions or to report a vulnerability:Security Contact
Support
For general support questions, contact:Customer Support
Frequently Asked Questions
Is Valiyou GDPR compliant and what does that mean for my data?
Is Valiyou GDPR compliant and what does that mean for my data?
What encryption standards does Valiyou use to protect my data?
What encryption standards does Valiyou use to protect my data?
How does Valiyou handle data backups and disaster recovery?
How does Valiyou handle data backups and disaster recovery?
What is ISO 27001 certification and why does it matter?
What is ISO 27001 certification and why does it matter?
Can I get a SOC 2 Type II report for vendor security assessments?
Can I get a SOC 2 Type II report for vendor security assessments?
How does Single Sign-On (SSO) improve security for my organization?
How does Single Sign-On (SSO) improve security for my organization?
What happens to my data if I cancel my Valiyou subscription?
What happens to my data if I cancel my Valiyou subscription?
How does Valiyou protect against unauthorized access and data breaches?
How does Valiyou protect against unauthorized access and data breaches?
Does Valiyou comply with industry-specific regulations for sports organizations?
Does Valiyou comply with industry-specific regulations for sports organizations?
How can I verify Valiyou's security claims and certifications?
How can I verify Valiyou's security claims and certifications?
Changelog
January 19, 2025
- Added: Evidence & Verification section with direct access to compliance documents
- Added: ISO 27001 certificate request process
- Added: SOC 2 Type II report request process (under NDA)
- Added: Data Processing Agreement (DPA) availability for enterprise
- Added: Subprocessor list documentation (Vercel, Supabase, SendGrid)
- Improved: Enterprise verification process details (2-3 business day turnaround)
Initial Release
- ISO 27001 certification documentation
- GDPR compliance information
- Enterprise SSO capabilities
- Data privacy commitments
- Security contact information