Skip to content

Trust center

Trust Center

Current security and privacy commitments, planned assurance work, and status information for teams evaluating MaskFlare.
Current status
  • SOC 2 Type II and ISO 27001: active roadmap, not yet certified
  • No-log architecture: operating boundary and audit scope to confirm
  • Sub-processor list: to be published at launch
  • Vulnerability disclosure: process to be published before public availability

Compliance status

SOC 2 Type II and ISO 27001 are on our active roadmap, not yet certified. We're publishing this status honestly rather than implying a certification we don't hold. Check back here for updates as milestones complete.

No-log architecture

Cloak is being designed around a no-log traffic architecture. The operating boundary and any independent audit scope must be confirmed before general availability.

Read the full No-Log Policy

Sub-processors

A full list of infrastructure and service sub-processors will be published here at launch.

Vulnerability disclosure

A responsible disclosure process will be published with its scope and reporting instructions before public availability. A bug-bounty timeline has not been committed.