TRUST & SECURITY

Information security, independently audited.

Tacto's information security management system is certified to ISO/IEC 27001.

CERTIFICATIONS

Independently certified. On the record.

ISO/IEC 27001:2022 Zertifizierungsmarke

ISO/IEC 27001

Issued by Proks Cert GmbH. Certificate no. DE-IS-20260285.

DSGVO / EU GDPR Konformitätsmarke

GDPR compliant

Data processed in the EU. Subprocessor list available in the Trust Center.

SECURITY AT TACTO

Product, infrastructure, data protection.

01 PRODUCT

Product

Tacto plugs into your existing IT – using the identities, roles, and permissions you already have. Every action is logged and searchable.

02 INFRASTRUCTURE

Infrastructure

Hosted entirely in the EU. Your data never leaves. Encrypted in transit and at rest, monitored around the clock.

03 DATA PROTECTION

Data Protection

Fully GDPR compliant. DPA on request. Transparent subprocessor list and clear processes for data access and deletion.

AI & YOUR DATA

Your data stays yours.

No AI trains on your data. It's there to run your business – not to develop our models.

EU only. Every AI feature runs inside the European Union.

Fully traceable. Every AI action is recorded in the audit log, so you can always see how a suggestion was generated.

FAQ

What procurement, IT, and legal usually ask.

More questions? Email hello@tacto.ai.

What does ISO 27001 certification actually mean?

An independent, accredited body has verified that Tacto manages information security systematically – with clear processes, controls, and continuous improvement. The certification is audited on a regular basis.

How do I get a completed security questionnaire?

The Trust Center has pre-filled answers to common questionnaires. For specific requests, we respond within a few business days – just email hello@tacto.ai.

How do I reach your security team?

Email us at security@tacto.ai.