Faros AI commitment to data privacy and security is embedded in every part of our business. This page outlines the high-level details for several frameworks, regulations, and certifications that apply to our company and its products.
Please contact security@faros.ai to report bugs and vulnerabilities or if you have any other specific questions or requests.
When reporting a bug or vulnerability, please provide a screen recording or another reproducible way of exploiting it. If a vulnerability proved in effect, we would compensate based on the fair market value for similar publicly disclosed vulnerabilities, e.g., on HackerOne.
Documents
Featured Documents
- Faros API IP addresses (EU1 region)
- Faros API IP addresses (US region)
- Faros Connectors IP addresses (EU1 region)
- Faros Connectors IP addresses (US region)
SOC 2 Type II and GDPR audit completion
Faros AI management is pleased to announce that Faros AI has completed an assessment of its compliance with the EU General Data Protection Regulation (GDPR). Insight Assurance conducted the assessment and confirmed that our data protection policies, procedures, and technical controls meet the requirements set forth by the GDPR. The assessment report is available on our security portal; the prior year’s report has been removed.
Faros AI management is pleased to announce that Faros AI has successfully completed its SOC 2 Type II audit for the one-year period ending July 2025. Insight Assurance conducted the examination and identified no exceptions in their review of our controls. The audit report is available on our security portal; the prior year’s report has been removed.
Faros AI management would like to announce that Faros AI has completed our SOC2 Type II audit for the one-year period ending in July 2024. The auditors at Prescient Assurance performed the audit and found no exceptions during their review of our controls. The report includes an attestation of Faros AI's GDPR controls. A copy of this report is available via our security portal. The previous year's report was removed.
Faros AI management would like to announce that Faros AI has completed our SOC2 Type II audit for the one-year period ending in July 2023. The auditors at Prescient Assurance performed the audit and found no exceptions during their review of our controls. The report includes an attestation of Faros AI's GDPR controls. A copy of this report is available via our security portal.
ISO 27001 Surveillance Audit Completion
Faros AI is pleased to announce the completion of the second surveillance ISO 27001 annual audit. Maintaining ISO 27001 demonstrates our continued commitment to meeting international information security standards. The audit summary and updated certificate are available here.
Faros AI is pleased to announce the completion of the ISO 27001 annual surveillance audit. Maintaining ISO 27001 demonstrates our continued commitment to meeting international information security standards. The audit summary and updated certificate are available here.
API Key Expiration
The Faros AI team added support for API Key Expiration. This feature enhances security by allowing customers to set a specific lifespan for API keys. Once the expiration date is reached, the key becomes invalid, reducing the risk of unauthorized access if the key is compromised. This feature helps ensure that API keys are only active for as long as necessary, encouraging regular key rotation and minimizing potential security vulnerabilities in applications.


