Trust Center
Compliance Roadmap
Where Chameleon Eye AI is today and where it is going.
Important Notice
Chameleon Eye AI is not currently SOC 2 certified, ISO 27001 certified, HIPAA compliant, or GDPR certified. This roadmap represents intentions, not completed certifications. Use of Chameleon Eye AI for regulated-data processing requires your own legal and compliance review.
Current
Implemented- +Local-first private mode
- +Server-side AI key protection
- +User cloud consent (in progress)
- +Usage and audit logging
- +Data retention policy published
- +Responsible disclosure process
In Progress
Planned- ~Legal review of Privacy Policy
- ~Legal review of Terms of Service
- ~DPA template preparation
- ~Security headers hardening
Next
Planned- →Security whitepaper publication
- →Penetration test (external)
- →SOC 2 readiness assessment
- →ISO 27001 readiness assessment
Enterprise
Enterprise option- ◆SOC 2 Type II audit
- ◆ISO 27001 certification
- ◆Custom DPA
- ◆Private deployment agreement
Enterprise compliance options are available upon request. Contact the Chameleon Eye AI team to discuss your specific requirements and timeline.
SOC 2 Preparation
Our approach to security audit readiness.
Readiness Assessment
Chameleon Eye AI is planning an external SOC 2 readiness assessment. This will identify gaps between current controls and SOC 2 Trust Services Criteria.
No Current Certification
Chameleon Eye AI does not currently hold a SOC 2 Type I or Type II report. Any claims of SOC 2 compliance should be verified directly with the Chameleon Eye AI team.
Enterprise Path
Enterprise customers requiring SOC 2 Type II reports can discuss timeline and scope with the Chameleon Eye AI team as part of an enterprise engagement.
