Skip to content

Compliance is not an
afterthought

412 policy documents across 17 compliance domains. Built-in PII detection, immutable audit logs, end-to-end encryption, SSO/SAML integration, and Terraform-based evaluation scoring. Five compliance frameworks, available on Enterprise plan.

SOC 2 Audit Status

JieGou is pursuing SOC 2 certification via Vanta to provide independent verification of our security controls.

SOC 2 Type II

Audit in progress via Vanta. Target completion: Q3 2026.

Target: Certified

Full certification expected after 6-12 month observation period.

412 policies tracked across 17 compliance domains

Regulation Matrix

Map your automations to compliance requirements

Map every workflow to HIPAA, SOX, GDPR, FedRAMP, and PCI-DSS controls. 412 policy documents cover 17 compliance domains — from information security and access control to vendor management and business continuity. Terraform-based evaluation scoring quantifies your compliance posture automatically.

  • 412 policy documents across 17 compliance domains
  • Terraform-based evaluation scoring
  • Per-workflow compliance indicators
  • Gap analysis dashboard with export

Data Protection

Configure data protection policies for sensitive data

Configure data protection policies for workflow inputs and outputs. Apply redaction rules, field-level encryption, and maintain a PII audit trail so you always know where personal data flows. Auto-detection of PII patterns is on the roadmap.

  • Configurable data protection policies
  • Configurable redaction rules
  • Field-level encryption options
  • PII audit trail (auto-detection on roadmap)

Audit Logging

Complete audit trail for every action

An immutable, append-only audit log records 30+ action types across your organization. Configurable retention policies and CSV/JSON export make it easy to provide evidence to auditors.

  • 30+ action types logged
  • Immutable append-only audit trail
  • Configurable retention policies
  • CSV/JSON export for auditors

Encryption

End-to-end encryption for data at rest and in transit

AES-256-GCM encryption for API keys with bring-your-own-key (BYOK) support, TLS 1.3 for all traffic, field-level encryption for sensitive data, and key rotation support to meet the strictest security requirements.

  • AES-256-GCM for API keys (BYOK)
  • TLS 1.3 for all traffic
  • Field-level encryption
  • Key rotation support

SSO & Access Control

Enterprise identity with granular permissions

SSO/SAML integration connects JieGou to your identity provider. Five roles with 20 granular permissions, department-scoped access, and MFA support give you complete control over who can do what.

  • SSO/SAML integration
  • 5 roles with 20 granular permissions
  • Department-scoped access
  • MFA support

Policy Library

412 policies across 17 compliance domains

A comprehensive policy library covering every compliance domain your auditors will ask about. Each policy is pre-filled, versioned, and mapped to the relevant compliance frameworks. Terraform-based evaluation scoring quantifies your posture across all 17 domains automatically.

  • Information Security, Access Control, Change Management
  • Incident Response, Risk Assessment, Vendor Management
  • Data Classification, Retention & Disposal, Acceptable Use
  • Business Continuity, Asset Management, Encryption, Logging & Monitoring
  • Physical Security, Employee Security, Privacy, Remote Work
  • Terraform evaluation scoring for automated compliance posture assessment
17 Compliance Domains Compliance Score: 94/100

Ready for your regulatory environment?

412 policies, 17 domains, five compliance frameworks. Terraform-based evaluation scoring included on Enterprise plan. Contact our team to learn about compliance features.