Security
Last updated June 2, 2026
Security is foundational to Concie. This page summarizes how we protect your data and your shoppers' conversations. For our full security documentation or to report an issue, contact security@concie.co.
Encryption
Data is encrypted in transit (TLS 1.2+) and at rest (AES-256). Secrets and access tokens for connected platforms are stored encrypted.
Infrastructure & hosting
The service runs on reputable cloud providers with EU hosting options, network isolation, and regular backups. We follow secure-by-default configuration and least-privilege access.
Access controls
Access to production and customer data is restricted to authorized personnel on a need-to-know basis, protected by SSO and multi-factor authentication, and logged.
AI guardrails
Concie answers only from your connected data and never invents stock, prices or delivery dates. You can require human approval for sensitive topics, and every answer is auditable.
Compliance
We align with GDPR and CCPA. SOC 2 Type II is in progress. A Data Processing Agreement (DPA) and current sub-processor list are available on request.
Vulnerability disclosure
We welcome responsible disclosure. Report suspected vulnerabilities to security@concie.co; please do not publicly disclose until we've had a chance to remediate.