Security Controls

The security practices we follow

BotLaunch is built around the security and availability principles that frameworks like SOC 2 describe. We are not currently SOC 2 certified, but the controls below are the practices we follow to protect your data.

Security by design

Practical controls built into the platform

Principles We Follow

Our security practices are organized around all five SOC 2 trust service principles:

Security

Systems are protected against unauthorized access, both physical and logical.

Availability

Systems are available for operation and use as committed.

Processing Integrity

System processing is complete, valid, accurate, and timely.

Confidentiality

Information designated as confidential is protected as committed.

Privacy

Personal information is collected, used, and retained in conformity with commitments.

Key Security Controls

Access control policies and procedures
Encryption of data at rest and in transit
Regular security assessments and penetration testing
Incident response and management procedures
Change management processes
Vendor management and third-party risk assessment
Employee security awareness training
Business continuity and disaster recovery planning
Logging and monitoring of system activities
Physical security of data centers

Security Questions?

Have questions about our security controls or compliance roadmap? Contact security@botlaunch.io and we'll be happy to help.

Explore Best Practices

Learn about best practices for building secure bot integrations.

Best Practices