Trust and security at Amy.

Amy has successfully completed a SOC 2 Type II examination, with controls independently assessed over the audit period. The report is available to qualified customers and prospects under NDA, alongside supporting security and data-protection documentation.

Questions, answered

Is Amy SOC 2 Type II validated?

Yes. Amy is SOC 2 Type II Certified. Built with SOC 2 Type II validated controls for enterprise security, governance and data handling.

How does Amy protect customer data?

Amy uses security controls such as encryption in transit and at rest, role-based access control, workspace isolation, monitoring, audit trails and enterprise authentication options.

Does Amy support SSO?

Amy supports enterprise authentication options such as SAML and OIDC-based SSO where enabled for the customer workspace.

How should vulnerabilities be reported?

Security researchers should report vulnerabilities responsibly using the security contact on the page and include steps to reproduce, impact assessment and supporting evidence.

Request Amy's security documentation.

Qualified customers and prospects can request the SOC 2 Type II report and security review materials under NDA.