Skip to main content
Within logo

Within

Regulatory evidence

Company Brain for people and agents to work in harmony.

within.aiAI toolsLast verified 21 Sep 2026

Within against third-party requirements

For each regulation, how many of the requirements it places on your vendors Within’s public evidence reaches. Open one for every item with its date and source.

Documents on the trust centre

What the vendor lists, typed; public items can be read now, the rest are available on request.

3 documents listed on Within’s trust centre

trust.within.ai
  • Security policy or overview
    • Information Security Policies and Procedures (2026-2027)on request · seen 21 Sep 2026
  • SOC 2 report
    • Architect SOC 2 Type II Report (Period: 2025-05-01 to 2025-10-31)on request · seen 21 Sep 2026
    • Architect SOC 2 Type II Report (Period: 2025-11-01 to 2026-04-30)on request · seen 21 Sep 2026

What the vendor says

Answers the vendor publishes to questions buyers ask, quoted with the link to where it says so.

  • Where data is hosted or processed

    Where is the data stored?

    All data is stored within secure data centers in the United States, using Amazon Web Services (AWS).

    Regions named: USas of 21 Sep 2026Source

  • Encryption

    How is the data protected and encrypted?

    Data is encrypted using industry-standard methods (AES-256 at rest and TLS 1.2 or higher in transit). Access to servers and databases is tightly restricted and monitored through role-based access and multi-factor authentication.

    as of 21 Sep 2026Source

  • Use of customer data to train models

    What policies are in place to prevent data retention and model training with sensitive customer data?

    Within’s Data Retention Policy outlines how long data is kept and how it is securely disposed of after that period. Within’s AIMS Policy describes how AI systems are used and ensures customer data is never used to train AI models.

    as of 21 Sep 2026Source

  • Use of customer data to train models

    Does Within train AI models using customer data?

    No. Within does not use customer data to train AI models.

    as of 21 Sep 2026Source

  • Penetration testing

    Are there regular security audits and penetration tests conducted?

    Yes. Within conducts security audits and penetration tests at least annually, using both internal processes and third-party assessments to ensure ongoing security.

    as of 21 Sep 2026Source

All articles

This maps third-party obligations to the vendor evidence that may support them. It is not legal advice and never a statement that a vendor or its customers comply; confirm scope and sufficiency with your counsel or auditor. “No public evidence” means nothing public was found at the last check. Citations link to the official text.