Skip to content
qBraid
/TRUST · SECURITY

Security you can build on.

Researchers, universities, and enterprises run sensitive work on qBraid. We protect it with encryption by default, least-privilege access, and a compliance program built for the platform's next stage of scale.

01/COMPLIANCE

SOC 2 Type II

In progress

Our SOC 2 Type II examination is underway, with continuous controls monitoring and evidence collection through Vanta. The report will be available under NDA once complete.

GDPR

Compliant

We honor data subject rights — access, correction, deletion, and portability — and govern third-party processors with data processing agreements. See the privacy policy for details.

ISO 27001

In progress

ISO 27001 is on our compliance roadmap. We are aligning our information security management system to the standard's controls ahead of certification.

02/PRACTICES

How we protect your work.

The controls below are in force today, independent of where any certification stands in its cycle.

01

Encryption everywhere.

Data is encrypted in transit with TLS and at rest with industry-standard AES-256. Secrets and credentials are stored in managed secret stores, never in source.

02

Access control & SSO.

Least-privilege access to production, scoped API keys you can rotate, and SSO for organizations on the Enterprise plan. Team roles gate who can see and do what.

03

You own your work.

Notebooks, circuits, and code you create on qBraid are yours. We do not train models on your private work, and we never sell personal data.

04

Hardened infrastructure.

The platform runs on isolated, US-based cloud infrastructure with network segmentation, audit logging, and monitored, minimal production access.

This page is informational and does not constitute a security warranty or a certification of compliance. Certifications noted as in progress are not yet complete. Contact us for our current compliance documentation and agreements.

REPORT A VULNERABILITY

Found something? Tell us.

We welcome responsible disclosure. Email our team with details and steps to reproduce, and request our compliance documentation (SOC 2, DPA) the same way.