{"@context":"https://certreports.com/llms.txt","vendor":{"slug":"cerebrium","name":"Cerebrium","domain":"cerebrium.ai","category":"AI tools","one_liner":"Serverless Infrastructure Platform for AI","trust_center_url":"https://trust.cerebrium.ai/","security_page_url":null,"url":"https://certreports.com/vendors/cerebrium/security","last_verified_at":"2026-09-18T00:00:00.000Z","claimed":false,"verified_profile":false},"attestations":[{"framework":"hipaa","framework_name":"HIPAA","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states that it will sign a business associate agreement on its trust centre (Vanta) as of 18 Sep 2026.","kind":null,"status_text":"Vendor displays a HIPAA badge on its trust centre (claim; BAA availability not yet captured)","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"vanta","url":"https://certreports.com/vendors/cerebrium/hipaa","evidence":[{"source_type":"trust_center","source_name":"Cerebrium trust centre (Vanta)","url":"https://trust.cerebrium.ai/","fetched_at":"2026-09-18 23:16:50.129534+00","content_hash":"ff6ebb55e745ce34e5c54de02d5a0b565b1ce29d727ad663fbf9df7abe435fae","wayback_url":null,"quote":"HIPAA","confidence":1}]},{"framework":"soc-2","framework_name":"SOC 2","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states a SOC 2 Type II report on its trust centre (Vanta) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states SOC 2 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"vanta","url":"https://certreports.com/vendors/cerebrium/soc-2","evidence":[{"source_type":"trust_center","source_name":"Cerebrium trust centre (Vanta)","url":"https://trust.cerebrium.ai/","fetched_at":"2026-09-18 23:16:50.129534+00","content_hash":"ff6ebb55e745ce34e5c54de02d5a0b565b1ce29d727ad663fbf9df7abe435fae","wayback_url":null,"quote":"SOC 2","confidence":1}]},{"framework":"gdpr","framework_name":"GDPR","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states a data processing agreement on its trust centre (Vanta) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states GDPR on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"vanta","url":"https://certreports.com/vendors/cerebrium/gdpr","evidence":[{"source_type":"trust_center","source_name":"Cerebrium trust centre (Vanta)","url":"https://trust.cerebrium.ai/","fetched_at":"2026-09-18 23:16:50.129534+00","content_hash":"ff6ebb55e745ce34e5c54de02d5a0b565b1ce29d727ad663fbf9df7abe435fae","wayback_url":null,"quote":"GDPR","confidence":1}]},{"framework":"iso-27001","framework_name":"ISO/IEC 27001","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an ISO/IEC 27001 certificate on its trust centre (Vanta) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states ISO 27001:2022 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"vanta","url":"https://certreports.com/vendors/cerebrium/iso-27001","evidence":[{"source_type":"trust_center","source_name":"Cerebrium trust centre (Vanta)","url":"https://trust.cerebrium.ai/","fetched_at":"2026-09-18 23:16:50.129534+00","content_hash":"ff6ebb55e745ce34e5c54de02d5a0b565b1ce29d727ad663fbf9df7abe435fae","wayback_url":null,"quote":"ISO 27001:2022","confidence":1}]}],"brief":null,"legal_docs":[{"kind":"subprocessors","url":"https://trust.cerebrium.ai/","availability":"public","detail":"7 subprocessors listed on the trust centre","as_of":"2026-09-18"},{"kind":"privacy","url":"https://www.cerebrium.ai/privacy","availability":"public","detail":null,"as_of":"2026-09-18"},{"kind":"security_txt","url":"https://trust.cerebrium.ai/","availability":"public","detail":"Public documents on the trust centre: (2026) ISO 27001:2022 Certificate","as_of":"2026-09-18"}],"subprocessors":[{"name":"Amazon Web Services","domain":"amazon.com","purpose":"Infrastructure","location":"United States, Japan, Madrid, Ireland","vendor_url":"https://certreports.com/vendors/amazon/security"},{"name":"GitHub","domain":"github.com","purpose":null,"location":null,"vendor_url":null},{"name":"Google Workspace","domain":"google.com","purpose":null,"location":null,"vendor_url":null},{"name":"Linear","domain":"linear.app","purpose":"Collaboration","location":null,"vendor_url":null},{"name":"Notion","domain":"notion.com","purpose":"Collaboration","location":null,"vendor_url":null},{"name":"Slack","domain":"slack.com","purpose":null,"location":null,"vendor_url":"https://certreports.com/vendors/slack-technologies/security"},{"name":"Vanta","domain":"vanta.com","purpose":null,"location":null,"vendor_url":"https://certreports.com/vendors/vanta/security"}],"disclaimer":"CertReports indexes public evidence. A missing framework means no public evidence was found at the last check, not that the vendor is non-compliant. SOC 2 is a report, not a certification; HIPAA has no certification.","generated_at":"2026-09-19T10:52:28.336Z"}