Trust Center

Posture de sécurité, de conformité et juridique de la Showly Platform. Achats Enterprise : cette page est votre point de départ — les liens profonds individuels font apparaître les documents de fond.

SOC 2

Target: 2026 Q4 audit completion. Type I report not yet available.

SOC 2 Type II — in progress

We will publish the auditor's report and the SOC 2 letter on this page once the Type II audit completes. Until then no SOC 2 claim should be inferred from this content. Enterprise procurement teams can request the latest evidence pack from security@showly.ai.

Data Processing Addendum

Showly's DPA is incorporated by reference into the Terms of Service for paid plans. Read it online, or download the markdown source for procurement review.

Sub-processors

Counsel review pending

Showly engages the following sub-processors to operate the platform. Material changes are notified 30 days in advance per the DPA. The full list, including optional providers, is at /legal/sub-processors.

  • Stripe, Inc.Payment processingUS (DPA via SCC)
  • Resend, Inc.Transactional + marketing emailUS (DPA via SCC)
  • Google Cloud PlatformCompute, storage, networkingUS / EU / AP
  • Cloudflare, Inc.Turnstile + edge CDNGlobal
  • SentryError trackingUS (DPA via SCC)

Security contact

Report a vulnerability or security concern to security@showly.ai. Our coordinated disclosure timeline is in SECURITY.md. We aim to acknowledge inbound reports within 1 business day.

Status & transparency

  • status.showly.ai · Independent subdomain probed from outside the primary plane.