Security & Trust
Dogetlawyer handles confidential legal information. Security is engineered into the platform — encryption, strict access control, active monitoring and a documented internal control programme.
Traffic is served over HTTPS/TLS. Documents and backups are held on encrypted storage.
Role-based, least-privilege access. Administrative tooling is restricted and separated from ordinary user accounts.
The application is scanned for web-shells and backdoors after changes, with recently-modified files reviewed.
Security-relevant events are logged. Our internal control programme tracks evidence, risks, policies and vendors.
Data is backed up so it can be recovered. Restores are periodically tested.
Sub-processors handling data (cloud, AI, payments) are reviewed for their own security posture and data agreements.
| Area | Status |
|---|---|
| SOC 2-aligned internal controls (control library, evidence, risk & vendor registers) | In operation |
| Independent SOC 2 examination by a licensed CPA | Not yet completed |
| Encryption in transit | In operation |
| Website security monitoring | In operation |
| UK/EU GDPR data-subject rights (access, erasure) | Supported |
Our website is monitored for malware and vulnerabilities. This applies to current website scanning — it is not a guarantee of the security of every integrated application, document or third-party vendor.
Found a vulnerability? Please tell us — we welcome responsible disclosure. Email click to show our security address. Do not include live client data in your report.