Wolfia Trust Center

We help sales, security, and support teams get answers in seconds without depending on subject-matter experts. Our AI agent connects to every source that already holds the truth (Google Drive, Notion, Slack, email, website, trust center, SOC 2 docs, etc.). It keeps that knowledge graph fresh on its own and drafts, validates, and formats responses to customer questions, security questionnaires, and RFPs, all in the background, so your team just reviews and ships.

Powered by Wolfia. Review compliance certifications, security policies, subprocessors, and request access to detailed documentation.

Skip to main content
Wolfia Trust Center

Wolfia Trust Center

We help sales, security, and support teams get answers in seconds without depending on subject-matter experts.

Our AI agent connects to every source that already holds the truth (Google Drive, Notion, Slack, email, website, trust center, SOC 2 docs, etc.). It keeps that knowledge graph fresh on its own and drafts, validates, and formats responses to customer questions, security questionnaires, and RFPs, all in the background, so your team just reviews and ships.

security@wolfia.com
Loading content...

Documentation

Featured

Web Application and API Penetration Test Report
Certificate of Liability Insurance
Wolfia Architecture Diagram
Wolfia Platform Security Overview
SOC 2 Type 2 Report

Subprocessors

Amazon Web Services
Amazon Web Services · United States
Primary cloud-hosting and infrastructure platform and AI services
Anthropic
Anthropic · United States
LLM inference via Claude API
Google
Google · United States
LLM inference (Gemini) via Vertex AI on Google Cloud, used only as a fallback
Microsoft Azure
Microsoft Azure · United States
API-based AI inference only (Azure OpenAI Service, Azure AI Foundry, Azure AI Document Intelligence). No customer data is hosted or stored on Azure infrastructure.
OpenAI
OpenAI · United States
LLM inference via OpenAI API

Controls

Access control

Robust identity and permission safeguards prevent unauthorized system access and enforce least-privilege principles

Single sign-on support
Automated user provisioning
Role-based access control
Formal onboarding and off-boarding
Encrypted administrative access
Annual access reviews
Multi-factor authentication
Data security

Encryption, retention and classification controls protect customer information throughout its lifecycle

Encryption at rest
Encryption in transit
Data retention and deletion policy
Full-disk workstation encryption
Data classification scheme
Application security

A mature secure development lifecycle and continuous testing keep the platform resilient against software threats

Secure development policy
Static code analysis and secret scanning
Dependency and image vulnerability scanning
Annual third-party penetration testing
Web application firewall
Secret scanning and rotation
Trusted container images
Deployment approval workflow

Frequently asked security questions

Is Wolfia secure?

Wolfia operates this public trust center. It publishes 5 independent compliance certifications, security documentation available on request, and a published list of its subprocessors.

Is Wolfia SOC 2 compliant?

Yes. Wolfia maintains SOC 2 Type II compliance. You can review this in the compliance section of this trust center.

Who are Wolfia's subprocessors?

Wolfia discloses its subprocessors in this trust center, including Amazon, Anthropic, and googlecloudplatform.com. See the subprocessors section for the complete list.

How do I request Wolfia's security documentation?

You can request access to Wolfia's security documentation directly through this trust center. Submit an access request and the Wolfia team reviews and grants access.