Security
Built for enterprise trust
Nesika AI handles competitive pricing data for retailers worldwide. Security, compliance, and data protection are foundational, not afterthoughts.
Certifications & Compliance
SOC 2 Type II (in progress)
Pursuing SOC 2 Type II certification, with an independent audit of our security, availability, and confidentiality controls underway.
GDPR Compliant
Full compliance with EU General Data Protection Regulation. Data Processing Agreement (DPA) provided to all customers.
CCPA Compliant
California Consumer Privacy Act compliance for US customers. We do not sell personal information.
Security Practices
Encryption Everywhere
All data is encrypted at rest (AES-256) and in transit (TLS 1.3). API keys are hashed and stored securely.
Azure Infrastructure
Hosted on Microsoft Azure with geo-redundant storage, automatic failover, and enterprise SLA guarantees.
Tenant Isolation
Each customer's data is logically isolated. Your product catalogue and pricing data are never shared with other customers.
Data Handling
What data does Nesika collect?
Nesika collects publicly available pricing data from retailer websites. Customer-provided data (product catalogues, internal pricing) is stored in isolated tenant environments and used only for your account.
How is data retained?
Customer data is retained for the duration of your contract plus 30 days. Historical pricing data is retained per your plan tier. You can request data deletion at any time.
Where is data stored?
All data is stored in Azure data centers. Enterprise customers can specify preferred data residency regions (Australia, EU, US).
Who has access to my data?
Access follows the principle of least privilege. Only authorized engineering staff with a business need can access customer environments, and all access is logged and auditable.
Security questions?
Contact our security team at security@nesika.ai for details on our SOC 2 Type II audit progress, penetration test results, or custom security assessments.