Trust Center

Compliance Roadmap

Where Chameleon Eye AI is today and where it is going.

Important Notice

Chameleon Eye AI is not currently SOC 2 certified, ISO 27001 certified, HIPAA compliant, or GDPR certified. This roadmap represents intentions, not completed certifications. Use of Chameleon Eye AI for regulated-data processing requires your own legal and compliance review.

Current

Implemented
  • +Local-first private mode
  • +Server-side AI key protection
  • +User cloud consent (in progress)
  • +Usage and audit logging
  • +Data retention policy published
  • +Responsible disclosure process

In Progress

Planned
  • ~Legal review of Privacy Policy
  • ~Legal review of Terms of Service
  • ~DPA template preparation
  • ~Security headers hardening

Next

Planned
  • Security whitepaper publication
  • Penetration test (external)
  • SOC 2 readiness assessment
  • ISO 27001 readiness assessment

Enterprise

Enterprise option
  • SOC 2 Type II audit
  • ISO 27001 certification
  • Custom DPA
  • Private deployment agreement

Enterprise compliance options are available upon request. Contact the Chameleon Eye AI team to discuss your specific requirements and timeline.

SOC 2 Preparation

Our approach to security audit readiness.

Readiness Assessment

Chameleon Eye AI is planning an external SOC 2 readiness assessment. This will identify gaps between current controls and SOC 2 Trust Services Criteria.

No Current Certification

Chameleon Eye AI does not currently hold a SOC 2 Type I or Type II report. Any claims of SOC 2 compliance should be verified directly with the Chameleon Eye AI team.

Enterprise Path

Enterprise customers requiring SOC 2 Type II reports can discuss timeline and scope with the Chameleon Eye AI team as part of an enterprise engagement.