Security at Every Layer

RedactorPlus is built with security, compliance, and data sovereignty at its core.

Certifications & Standards

ISO 27001

Information security management system certification.

SOC 2

Service Organization Control 2 compliance.

ISO 27017

Cloud security controls and guidelines.

ISO 27018

Protection of personally identifiable information in public cloud.

Cyber Essentials Plus

UK government-backed cybersecurity certification.

Data Sovereignty

RedactorPlus uses patented local AI processing. Personal data is never sent to external AI services. All AI inference runs within your deployment environment, ensuring complete data sovereignty and compliance with data protection regulations.

Encryption

All data is encrypted in transit using TLS 1.2+ (HTTPS with A-grade score) and at rest using industry-standard encryption. Communication between services is fully encrypted.

Penetration Testing

Independent penetration testing is conducted before every major release and at minimum annually. Automated SAST/DAST scanning is integrated into our development pipeline for continuous security assessment.

GDPR Compliance

RedactorPlus is designed with GDPR compliance at its core: data minimisation, complete audit trails, configurable auto-deletion policies, and purpose limitation. Processing records are maintained for accountability.

Deployment Options

Choose the deployment model that meets your security requirements.

SaaS

Cloud-hosted in compliance with data residency requirements, with ISO 27001, SOC 2, ISO 27017, and ISO 27018 certified infrastructure.

On-Premises

Deploy within your own data centre or private cloud for complete infrastructure control.

Hybrid

Combine cloud management with on-premises data processing for flexible security.

Offline

Fully air-gapped deployment for environments with no external connectivity requirements.

Learn More About Our Security

Request a security briefing or review our detailed security documentation.