Last updated: June 14, 2026
Security is foundational to how Edirae is built and operated. This page answers the questions teams most often ask before trusting us with their data — clearly, and without jargon.
If your question isn't covered here, email security@edirae.com and we'll get you an answer.
Specific data-region details are available on request for teams with residency requirements — contact security@edirae.com.
If a security incident occurs, our approach is:
For full details on what we collect and your rights, see our Privacy Policy.
We rely on a small set of trusted third-party providers to operate Edirae. Each receives only the data necessary for its function.
| Subprocessor | Purpose | Data Shared |
|---|---|---|
| DigitalOcean | Cloud hosting, compute, managed database, and object storage | All application and learning data (encrypted at rest) |
| Resend | Transactional email delivery | Name, email address, and message content |
| Sentry | Error monitoring and reliability logging | Error traces and limited technical metadata |
| Pusher | Real-time notifications and live updates | Account identifiers and event payloads |
| Stripe | Payment processing | Billing details (handled by the processor; we do not store card numbers) |
| Polar | Payment processing and merchant of record | Billing details (handled by the processor; we do not store card numbers) |
| Paystack | Payment processing | Billing details (handled by the processor; we do not store card numbers) |
| Anthropic, OpenAI, Google (Gemini), DeepSeek, Mistral | AI mentor, evaluation, and learning-content generation | Only the minimum context required per request |
AI providers receive only the minimum data required per request, and we do not permit your content to be used to train third-party models.
We follow SOC 2-aligned security practices across access control, monitoring, and change management.
SOC 2: In progress — Type 1 audit scheduled for Q1 2027.
We welcome responsible disclosure. If you believe you've found a security issue, please email security@edirae.com with details and steps to reproduce. Please give us a reasonable opportunity to address the issue before public disclosure.
Our commitment
Security is never "done." We continuously improve our practices as Edirae grows, and we'll keep this page current as that work progresses.