Information Security Policy

Gaia Dynamics Information Security Policy

Effective Date: May 12, 2025

At Gaia Dynamics, we understand that trust is built on transparency and security. Our AI-powered platform handles sensitive trade and regulatory data, and protecting that data is core to our mission.

This page outlines our commitment to safeguarding the confidentiality, integrity, and availability of customer and partner information.

Our Security Principles

We follow industry best practices to ensure your data is safe:


Confidentiality

Only authorized users have access to data, and only for legitimate business purposes.


Integrity

We maintain the accuracy and consistency of your data through secure development practices, audit logging, and change controls.


Availability

Our systems are designed for resilience. We invest in uptime, disaster recovery, and ongoing monitoring to ensure you can rely on Gaia when you need it.


Key Practices We Follow

• Access Controls: All customer and internal systems are protected with role-based access and multi-factor authentication.

• Data Encryption: We use encryption in transit (TLS 1.2 or higher) and at rest (AES-256) across all environments.

• Secure Development Lifecycle (SDLC): We embed security reviews into product design, development, and testing.

• Vulnerability Management: Our team monitors for new threats, regularly patches systems, and conducts security testing.

• Incident Response: We have a formal process to respond quickly and transparently to any potential breach or incident.

• Employee Training: Security awareness training is mandatory for all team members and reviewed regularly.

• Vendor Risk Management: We assess the security posture of any third party with access to sensitive data.


Compliance and Governance

We align with leading security frameworks and regulatory best practices, including those relevant to cross-border trade, privacy, and enterprise software. We are also preparing for independent third-party assessments as we scale.


Reporting Security Issues

We take security concerns seriously. If you believe you’ve discovered a vulnerability or risk involving Gaia Dynamics systems or data, please report it to us immediately: security@gaiadynamics.com.


Policy Updates

This Information Security Policy is reviewed and updated regularly to reflect changes in our systems, regulatory requirements, or industry standards.


Last updated: May 12, 2025