Security at eulaw.ai

Our platform has been engineered with comprehensive security and data privacy measures to protect your sensitive legal research.

Security & Compliance Features

No Model Training

Your data is kept private and secure. It is never used for training AI models.

GDPR Compliance

Our platform has been engineered with security and data privacy measures to ensure full GDPR compliance.

EU Data Residency

All your legal research data is stored and processed exclusively within the European Union with no cross-border data transfers outside the EU. Full compliance with EU data sovereignty requirements.

DDoS Protection

Our infrastructure includes multiple layers of protection against denial-of-service attacks through global CDN for automatic DDoS mitigation and Web Application Firewall (WAF) with managed rule sets and rate limiting to prevent abuse.

Multifactor Authentication

Users can at their discretion enable multifactor authentication (MFA) which provides stronger security than the classic username and password. Supported in our own authentication system and when you decide to log in via a personal or enterprise Google account. Our MFA implementation allows MFA via both physical security tokens and MFA applications using biometrics on your phone or personal computer.

Single Sign-On

Single sign-on (SSO) is supported for Google accounts. If you are a large enterprise, please contact us for further detail regarding support for your authentication system.

Encryption

All customer data is encrypted both at rest and in transit. We use modern encryption protocols such as TLS 1.3 for maximum security.

Third-party Security Audits

Our infrastructure is audited by independent security experts on a regular basis.

Vulnerability Management

We check our code and infrastructure using both real humans and AI. In addition, we use tools such as Snyk to test for vulnerabilities.

ISO 27001:2022 & SOC 2

Our service is run from ISO 27001:2022 and SOC 2 certified data centres.

Important Note on Data Access

Be aware that if you access the service from outside the EU, data will be exported to your PC or phone using secure encryption.