Security & Trust · v2.0 · Effective 2026-04-23

Security & trust.

How Facet protects Customer Data and agent traffic, mapped to SOC 2 Trust Services Criteria, ISO/IEC 27001:2022 Annex A, and NIST CSF 2.0 Functions, with tier-level RTO/RPO, vulnerability-disclosure safe harbor, and the canonical subprocessor list.

Sections 01 Scope 02 Control mappings 03 Identity & access 04 Data protection 05 Application security 06 Infrastructure 07 Monitoring & incident 08 BC/DR (RTO/RPO) 09 Vulnerability disclosure 10 Personnel 11 Subprocessors 12 OSS attribution 13 Contact