Back to home

Security & Compliance

Last updated: 21 February 2026

1. Our Commitment to Security

At DealStudio, we are deeply committed to the security of our platform and the protection of your data. We understand the sensitive nature of M&A deal management and have implemented a comprehensive security program designed to safeguard your information at every layer.

2. Key Security Measures

2.1 Data Encryption

All data is encrypted both in transit and at rest. We use industry-standard TLS 1.2 or higher for data in transit and AES-256 encryption for data at rest, ensuring your information is protected from unauthorized access.

2.2 Infrastructure Security

Our platform is built on Supabase, which leverages the secure and scalable infrastructure of Amazon Web Services (AWS). Our infrastructure is regularly monitored, patched, and audited to protect against vulnerabilities.

2.3 Access Control

We enforce strict access control policies. Our multi-tenant architecture and Row-Level Security (RLS) in PostgreSQL ensure that your data is isolated and only accessible to authorized users within your organization.

3. Compliance and Certifications

Our infrastructure providers maintain compliance with leading global standards. We are actively working towards achieving the following certifications:

  • SOC 2 Type II: (In Progress) Demonstrates our commitment to controls related to security, availability, and confidentiality.
  • ISO 27001: (Planned) An international standard for information security management.
  • GDPR: We are fully compliant with the General Data Protection Regulation for users in the European Union.

4. Responsible Disclosure

If you believe you have discovered a security vulnerability, please let us know. We are committed to working with security researchers to resolve any issues. Please contact us at security@dealstudio.co.uk.