Trust center
Trust Center
Current security and privacy commitments, planned assurance work, and status information for teams evaluating MaskFlare.
- SOC 2 Type II and ISO 27001: active roadmap, not yet certified
- No-log architecture: operating boundary and audit scope to confirm
- Sub-processor list: to be published at launch
- Vulnerability disclosure: process to be published before public availability
Compliance status
SOC 2 Type II and ISO 27001 are on our active roadmap, not yet certified. We're publishing this status honestly rather than implying a certification we don't hold. Check back here for updates as milestones complete.
No-log architecture
Cloak is being designed around a no-log traffic architecture. The operating boundary and any independent audit scope must be confirmed before general availability.
Read the full No-Log Policy →Sub-processors
A full list of infrastructure and service sub-processors will be published here at launch.
Vulnerability disclosure
A responsible disclosure process will be published with its scope and reporting instructions before public availability. A bug-bounty timeline has not been committed.