Security Posture, Trust, and Privacy

How Laserreach protects accounts, data, and outreach activity today.

SOC 2 Status

SOC 2 readiness work is in progress. We are not presenting this as a current SOC 2 Type I or Type II attestation.

Account access

Organization roles, admin controls, and multi-factor authentication help keep account access limited to the right people.

Activity history

Important account and agent actions are recorded. Larger teams can ask about exporting security events.

Login and abuse protection

Sessions expire, and rate limits protect login, password reset, and API key endpoints from repeated abuse.

Connection controls

Production services restrict which websites and connections can access protected resources.

Data retention and deletion

Our published policy explains retention periods and how to request deletion.

Incident response

We maintain procedures for investigating incidents, managing vendors, and responding to security risks.

Security testing

We test authentication, rate limits, timeouts, and other security controls as the product changes.

Outreach protections

Daily limits, sending hours, account checks, opt-outs, and optional review controls remain available during automatic outreach.

Security information available on request

  • Access Control Policy
  • Data Retention and Deletion Policy
  • Incident Response Plan
  • Vendor Management Policy
  • Risk Assessment
  • Audit Logging Overview
  • SOC 2 Readiness Status
  • Security Testing Summary

DPA, SLA, and subprocessor details are available upon request.

Support: support@laserreach.com · Security: security@laserreach.com