Shadowfax AI · Trust Center

Shadowfax Trust Center

Trust center

Shadowfax AI maintains a public trust center documenting SOC 2 and HIPAA compliance.

CompanyAnalyticsBusiness IntelligenceArtificial IntelligenceDataAgentic AnalyticsData EngineeringSoftware-as-a-Service
Trust center: https://trust.shadowfax.ai/

Certifications & Compliance

SOC 2HIPAA

Source

Trust Center

shadowfax-trust-center.yml Raw ↑
generated: '2026-08-27'
method: searched
source: https://trust.shadowfax.ai/
url: https://trust.shadowfax.ai/
name: Shadowfax AI Trust Center
note: >-
  Self-hosted trust center at trust.shadowfax.ai (HTTP 200, 429KB, browser
  User-Agent required — a default crawler UA is answered with a CloudFront 403).
  The page states the company was founded in 2025 and publishes a security
  contact, a compliance list, a control inventory, a policy library and a
  named subprocessor list. Corrected by hand after the automated probe:
  probe-security-programs.py captured HIPAA as an achieved certification, but
  the page marks it "Coming soon" — only SOC 2 is claimed as attained.
certifications:
- name: SOC 2
  status: compliant
  evidence: 'Compliances table: "SOC 2 — Compliant"'
- name: HIPAA
  status: coming-soon
  evidence: 'Compliances table: "HIPAA — Coming soon"'
  note: Announced, not attained. Do not count this as a held certification.
control_families:
- product-security
- data-security
- network-security
- app-security
- endpoint-security
- corporate-security
policies:
  published: false
  note: >-
    A policy library is listed (System Description, Personal Data Breach
    Notification Procedure, PHI Data Breach Notification Procedure, Physical &
    Environmental Security, SDLC Procedure, and "+39 more") but the documents
    themselves are behind a "Request access" gate.
subprocessors:
- name: PostHog
  category: Analytics
  region: United States of America
- name: Cloudflare
  category: Hosting Providers
  region: United States of America
- name: Anthropic
  category: Artificial Intelligence
  region: United States of America
- name: GCP
  category: IT infrastructure
  region: United States of America
- name: Sentry
  category: Analytics
  region: United States of America
- name: OpenAI
  category: Artificial Intelligence
  region: United States of America
evidence:
- url: https://trust.shadowfax.ai/
  status: 200
  note: 200 with a browser User-Agent; 403 (CloudFront) with a default crawler UA.

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/shadowfax-trust-center"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.