Skip to main content
This page points you to Chief’s security and compliance resources and explains, at a high level, how your data is protected.

Security and compliance programs

Chief is built to support these standards and frameworks:
  • SOC 2 Type II
  • GDPR
  • HIPAA
ℹ️ Good to Know: The third-party AI models Chief uses are not trained on your data. Your content is used to answer your questions, not to improve any model.

Data Processing Agreement (DPA)

If your organization needs a signed Data Processing Agreement, contact the Chief team. They can confirm DPA availability, the current SOC 2 report, and exact certification status for your security review.
⚠️ Important: Before citing specific certification dates, audit scopes, retention periods, or data-residency regions in a contract or RFP, get current confirmation from the Chief team — don’t rely on this page alone for those specifics.

Frequently asked questions

Reports of this kind are typically shared under NDA. Contact the team via the Trust and Security page to request the current report.
Reach out to the Chief team to arrange a Data Processing Agreement; they’ll confirm availability and turnaround.
If your organization has a specific data-residency requirement, confirm the current regions with the Chief team via the Trust and Security page.