atliant

Compliance

Compliance & accreditation

Atliant is committed to meeting the highest standards of regulatory compliance and data protection. We support our members' compliance with privacy laws and pursue industry-recognized accreditations to ensure every interaction on our marketplace is secure and trustworthy.

Our compliance commitments

Atliant supports our members' compliance with privacy laws, including the GDPR and CCPA, and offers a Data Processing Addendum for enterprise customers. Our platform has been designed to align with industry standards for security and confidentiality, and we are actively pursuing SOC 2 Type 2 certification.

We believe that compliance is not a checkbox — it is a continuous commitment. Atliant evaluates its policies, technical controls, and third-party relationships on an ongoing basis to ensure alignment with evolving regulatory requirements and industry best practices.

Certifications & accreditations

Atliant maintains and pursues certifications that demonstrate our commitment to protecting member data and maintaining platform integrity.

SOC 2 Type 2

In Progress

Independent third-party audit evaluating the design and operating effectiveness of security and confidentiality controls across the Atliant platform.

GDPR

Compliant

Full compliance with the General Data Protection Regulation for our European members, including Standard Contractual Clauses for international data transfers and Data Processing Addendums.

CCPA

Compliant

Compliance with the California Consumer Privacy Act, including rights to access, delete, and opt-out of data collection. We do not sell or share personal data for third-party marketing purposes.

Regulatory frameworks

Full Compliance

GDPR
European members

Full Compliance

CCPA
California residents

Available

DPA
Enterprise customers

Atliant processes personal data in accordance with applicable privacy laws. We rely on legitimate interests, contractual necessity, and consent as legal bases for processing — and we maintain Standard Contractual Clauses for international data transfers from the EEA to recipients outside the EEA.

View our Privacy Policy

Data protection standards

Encryption at rest

All data stored on the Atliant platform is encrypted using AES-256 encryption, the same standard used by financial institutions and government agencies.

Encryption in transit

All data transmitted between your browser and our servers is protected with TLS 1.2 or higher, preventing interception and tampering.

International transfers

Where Atliant transfers personal data from the EEA to recipients outside the EEA that are not in an Adequate Jurisdiction, we do so on the basis of Standard Contractual Clauses in accordance with applicable data protection laws.

Third-party processor safeguards

If Atliant engages a third-party processor to handle personal data, the processor is subject to binding contractual obligations to only process data in accordance with our instructions and to use measures protecting confidentiality and security.

Data minimization & retention

We take every reasonable step to ensure that personal data we process are limited to what is reasonably necessary, and retained only for as long as needed in connection with a lawful purpose.

Data accuracy

We take every reasonable step to ensure that personal data we process are accurate and, where necessary, kept up to date. Inaccurate data are erased or rectified without delay.

Your data rights

Under applicable law, including the GDPR and CCPA, Atliant members have a number of rights regarding the processing of their personal data. We are committed to honoring these rights and providing timely, transparent responses to all requests.

Right to access

You have the right to request access to, or copies of, your personal data, together with information regarding the nature, processing, and disclosure of that data.

Right to rectification

You have the right to request rectification of any inaccuracies in your personal data held by Atliant.

Right to erasure

You have the right to request, on legitimate grounds, the erasure of your personal data from our systems.

Right to restrict processing

You have the right to request, on legitimate grounds, restriction of processing of your personal data by Atliant.

Right to data portability

You have the right to have certain personal data transferred to another controller, in a structured, commonly used, and machine-readable format.

Right to withdraw consent

Where we process your personal data on the basis of your consent, you have the right to withdraw that consent at any time. Withdrawal does not affect the lawfulness of processing performed prior to withdrawal.

Right to non-discrimination

Under the CCPA, you have the right not to be discriminated against for exercising your privacy rights, including receiving a different level of service or pricing.

To exercise any of these rights, or to ask a question about your data, please contact our compliance team.

compliance@atliant.io

Questions about compliance?

Our compliance team is here to help with data protection inquiries, rights requests, and enterprise compliance requirements.

Contact Compliance Team