Security & Compliance

Enterprise-Grade
Security You Can Trust

Your data security is our top priority. We implement industry-leading security measures and are committed to achieving the highest compliance standards.

ISO 27001(In Progress)
SOC 2(Planned)
GDPR(Compliant)
CCPA(Compliant)

Compliance & Certifications

We are committed to meeting the highest security and compliance standards

ISO 27001

In Progress

We are actively pursuing ISO 27001 certification, the international standard for information security management systems.

Timeline: Expected Q2 2026

SOC 2 Type II

Planned

SOC 2 Type II audit is planned following ISO 27001 certification to provide additional assurance for enterprise customers.

Timeline: Planned Q3 2026

GDPR

Compliant

Fully compliant with the General Data Protection Regulation. We process data lawfully, transparently, and for specific purposes.

Timeline: Active

CCPA

Compliant

Compliant with the California Consumer Privacy Act. California residents can request access to or deletion of their personal data.

Timeline: Active

Security Measures

Multiple layers of protection to keep your data safe

Encryption at Rest & In Transit

All data is encrypted using AES-256 encryption at rest and TLS 1.3 for data in transit. Your information is protected at every step.

Access Controls

Role-based access control (RBAC) ensures team members only access what they need. SSO/SAML integration available for enterprise.

Audit Logging

Comprehensive audit logs track all system access and changes. Enterprise customers can export logs for compliance reporting.

Regular Backups

Automated daily backups with 30-day retention. Point-in-time recovery available. Geographic redundancy for disaster recovery.

Threat Detection

Real-time monitoring for suspicious activity, automated threat detection, and 24/7 security operations center monitoring.

Vendor Security

All third-party vendors undergo security assessments. We maintain a minimal vendor footprint and regularly audit integrations.

Infrastructure & Reliability

Built on enterprise-grade infrastructure for maximum reliability

USA Data Centers

All data is stored and processed in SOC 2 certified data centers located in the United States.

99.99% Uptime SLA

Enterprise customers receive 99.99% uptime guarantees with financial credits for any downtime.

Data Isolation

Customer data is logically isolated. Enterprise customers can request dedicated infrastructure.

Disaster Recovery

Multi-region failover capabilities with RTO < 4 hours and RPO < 1 hour for business continuity.

How We Handle Your Data

Transparency in what we collect and how we protect it

What We Collect

  • Website URLs for optimization analysis
  • Schema and structured data from public pages
  • AI search visibility metrics (anonymized)
  • Account information (email, billing)

What We Don't Collect

  • Customer PII from your store
  • Payment card information (handled by Stripe)
  • Passwords in plain text
  • Unnecessary personal data

How We Protect It

  • AES-256 encryption at rest
  • TLS 1.3 encryption in transit
  • Regular security audits
  • Employee background checks

Security FAQs

Where is my data stored?

All customer data is stored in SOC 2 certified data centers located in the United States. We use industry-leading cloud infrastructure providers with comprehensive physical and network security controls.

Is PageX GDPR compliant?

Yes, PageX is fully GDPR compliant. We process data lawfully and transparently, collect only necessary data, and provide mechanisms for data access, correction, and deletion requests.

Do you have SOC 2 certification?

We are currently pursuing ISO 27001 certification with SOC 2 Type II planned for Q3 2026. Our infrastructure is hosted on SOC 2 certified cloud platforms, and we follow SOC 2 principles in our security practices.

How do you handle security incidents?

We have a comprehensive incident response plan that includes immediate containment, investigation, customer notification within 72 hours (or as required by law), and post-incident analysis to prevent recurrence.

Can I request a security assessment or penetration test report?

Enterprise customers can request our latest security documentation, including penetration test summaries and security questionnaire responses. Contact our security team at security@pagex.to.

Do you support SSO/SAML?

Yes, SSO/SAML integration is available for Enterprise customers. We support integration with major identity providers including Okta, Azure AD, Google Workspace, and OneLogin.

Questions About Security?

Our security team is here to help. Request security documentation, discuss compliance requirements, or report a security concern.