Security & trust
Confidentiality is the foundation.
Legal data is among the most sensitive there is. Here's how Copacetic keeps your clients' information safe.
Encryption everywhere
All data is encrypted in transit with TLS 1.2+ and at rest with AES-256. Document shares are individually encrypted.
Authentication
Sign-in is handled by Auth0, with support for SSO and two-factor authentication on every account.
UK data residency
Your data is stored in UK data centres operated by ISO 27001-certified providers, never sold or used to train third-party models.
Access logging
Every document view, download and share is recorded in an immutable audit log you can review at any time.
Granular access
Role-based permissions and per-matter access keep client confidentiality intact, including for external collaborators.
Compliance
We operate in line with the UK GDPR, the Data Protection Act 2018 and SRA expectations for client confidentiality.
Found a vulnerability? Email security@copacetic.co — we respond to all reports within one business day.
