Skip to main content
Version: v2.10.0

Compliance

Yeedu maintains certifications and processes that meet the requirements of highly regulated industries. The platform is designed so that customer data stays inside your own Virtual Private Cloud, which simplifies your own compliance posture. This page lists the frameworks Yeedu has been audited against. For the current attestation reports or auditor letters, contact your Yeedu account team.

SOC 2 Type II badge

SOC 2 Type II evaluates how a service organization manages customer data over time against the AICPA Trust Services Criteria (security, availability, processing integrity, confidentiality, and privacy). Yeedu undergoes annual SOC 2 Type II audits covering the Control Plane and the deployment automation that provisions Yeedu Compute inside your cloud.

Shared responsibility

Yeedu operates a shared-responsibility model:

  • Yeedu is responsible for the security and compliance of the Control Plane, the deployment automation, and the build pipeline for the Yeedu runtime images.
  • You are responsible for the configuration of your VPC, your identity provider, your network controls, and the data you store in workspaces, catalogs, and mounts.