Trust center

What we stand behind.

Security, privacy, compliance, accessibility, and the providers behind the platform, collected in one place and written to be honest about the limits. We are not SOC 2 or HIPAA certified. We say so plainly, and link you to the details.

Everything in one place

Read it for yourself.

Each page below is the authoritative source for its topic. We would rather you find the caveats here than be surprised by them later.

What we do not claim

We have not completed an independent SOC 2 audit, we are not a HIPAA platform by default, and our data is not end-to-end encrypted (AI prompts and files are sent to our AI provider to work). We align our controls with recognized frameworks and are candid about the gaps. The full list lives on What Olto is not, which is generated from the same constant the product pages read. Where we are headed on these is tracked on the non-binding product updates page.

Do not take our word for any of this.

Generate a protocol from your own research goal and read the record it produces. If something on this page is unclear, or you need documentation for a security review, ask us instead: we would rather answer than have you guess.

Try OltoSystem status