Security & Compliance
We take security seriously and do everything we can to protect your data.

We are fully GDPR complaint. You'll find our Data Processing Agreement in the 'Security documentation' section below.

We are SOC2 Type II certified. You can request a copy of our compliance report in our Trust Center.
Our Security Partners


Data Processing Agreement
Everything you need to know about how we process your data.
SOC2 Type II compliance report
You can request a copy of our SOC 2 Type II compliance report in our Trust Center.
Pentest report
We partner with Vaadata & Cure53 for our security.
Terms of Service
Our Terms of Service govern your contract with Perdoo.
Privacy policy
Check out our Privacy policy to learn how we handle sensitive data.
Data Security Policy
Read about our policies and practices to protect your data.
Perdoo AI
We prioritize the protection of your data and ensure that all data-handling practices comply with applicable laws and regulations.
Open AI
Perdoo GmbH has partnered with OpenAI Ireland Ltd for its AI functionality.
The use of OpenAI is entirely optional and confined to the in-app AI features. Superadmins can disable Perdoo’s AI features under Configure > Features.
Data protection
All data processed by OpenAI for this purpose remains on dedicated servers allocated for Perdoo’s use. There is no integration or data sharing between these servers and OpenAI's global or external resources. And there is no integration or data sharing between different Perdoo accounts.
We’ve carried out in-depth legal and security due diligence and have signed a Data Processing Agreement, alongside Standard Contractual Clauses, with OpenAI.
We are committed to ensuring that all our sub-processors adhere to strict data protection standards in compliance with applicable data protection laws, including the General Data Protection Regulation (GDPR).
Frequently Asked Questions
Are there any new sub-processors that will be involved in the processing of my data?
Yes, OpenAI (OpenAI Ireland Ltd, to be precise).
See also the notification about the sub-processors change that we sent out on July 29, 2025, as well as page 5 of our DPA.
Can I disable Perdoo’s AI features for my account?
Yes. The use of Perdoo’s AI features is entirely optional.
Superadmins can choose to disable under Configure > Features.
Where is my data transmitted to?
Your data will not be transferred outside of OpenAI’s dedicated servers allocated for Perdoo’s use.
Are Perdoo’s AI features GDPR compliant?
Yes, they are. We are committed to ensuring that all our sub-processors adhere to strict data protection standards in compliance with applicable data protection laws, including the General Data Protection Regulation (GDPR).
Is user data and input used to train the model to get better answers over time?
Users will get better answers over time but models are not trained with your data.
Is data from our Perdoo account used to improve the model or the service for other customers?
No. There is no integration or data sharing between these servers and OpenAI's global or external resources. And there is no integration or data sharing between different Perdoo accounts.
Suggestions and recommendations for an individual user are solely based on data within the Perdoo account that the user belongs to as well as any additional documents that they provide.
Perdoo GmbH has partnered with OpenAI Ireland Ltd for its AI functionality.
The use of OpenAI is entirely optional and confined to the in-app AI features. Superadmins can disable Perdoo’s AI features under Configure > Features.
Data protection
All data processed by OpenAI for this purpose remains on dedicated servers allocated for Perdoo’s use. There is no integration or data sharing between these servers and OpenAI's global or external resources. And there is no integration or data sharing between different Perdoo accounts.
We’ve carried out in-depth legal and security due diligence and have signed a Data Processing Agreement, alongside Standard Contractual Clauses, with OpenAI.
We are committed to ensuring that all our sub-processors adhere to strict data protection standards in compliance with applicable data protection laws, including the General Data Protection Regulation (GDPR).
Frequently Asked Questions
Are there any new sub-processors that will be involved in the processing of my data?
Yes, OpenAI (OpenAI Ireland Ltd, to be precise).
See also the notification about the sub-processors change that we sent out on July 29, 2025, as well as page 5 of our DPA.
Can I disable Perdoo’s AI features for my account?
Yes. The use of Perdoo’s AI features is entirely optional.
Superadmins can choose to disable under Configure > Features.
Where is my data transmitted to?
Your data will not be transferred outside of OpenAI’s dedicated servers allocated for Perdoo’s use.
Are Perdoo’s AI features GDPR compliant?
Yes, they are. We are committed to ensuring that all our sub-processors adhere to strict data protection standards in compliance with applicable data protection laws, including the General Data Protection Regulation (GDPR).
Is user data and input used to train the model to get better answers over time?
Users will get better answers over time but models are not trained with your data.
Is data from our Perdoo account used to improve the model or the service for other customers?
No. There is no integration or data sharing between these servers and OpenAI's global or external resources. And there is no integration or data sharing between different Perdoo accounts.
Suggestions and recommendations for an individual user are solely based on data within the Perdoo account that the user belongs to as well as any additional documents that they provide.
Security questions?
If you have a security question, please contact our security team.


Ready to get started?
Start with your team now. Free for up to 5 people.
Oops! Something went wrong while submitting the form.