Skip to content
New Signal-based gating for canary steps is live in v2.14 Read the changelog →

Trust

Security you can check, not just claims.

Certifications, practices, and the documents your security team will ask for.

  • SOC 2 Type II

    Audited annually by an independent assessor. Report available under NDA.

  • ISO 27001

    Certified since 2024. Scope covers the control plane and all customer data.

  • GDPR

    EU data residency available. DPA signed as standard on Business and above.

  • Penetration testing

    Annual third-party test. Summary available on request.

Practices

  • Encryption in transit (TLS 1.3) and at rest (AES-256)
  • Secrets are referenced, never stored by Thrayne
  • SSO via SAML with SCIM provisioning on Business and above
  • Segregation-of-duties policies enforced in the pipeline
  • Immutable audit log with configurable retention
  • Least-privilege access, reviewed quarterly

Request the SOC 2 report and penetration test summary at security@thrayne.dev.

Get started

Put every release behind one gate.

Start with a single environment for free. Add the rest when your team is ready — no migration, no rebuild, no second dashboard.

  • Free for one environment
  • SOC 2 Type II
  • Self-host or managed
  • No card required