Security built into every layer
Circuit protects your information through secure infrastructure, enterprise access controls, and responsible data practices.
SOC 2 Type II audited










Protecting your business-critical information
Secure infrastructure
Circuit has achieved SOC 2 Type II compliance, verified through independent audit. Customer information is encrypted at rest using AES-256 and in transit using TLS 1.2 or higher. Encryption keys are managed and rotated using AWS Key Management Service (KMS).
Your information stays yours
Each customer's information is logically isolated within the platform to prevent cross-tenant access and ensure your organization's information remains separate from every other customer.
Control access across your organization
Single sign-on (SSO)
Support for Microsoft and Google single sign-on (SSO), with multi-factor authentication (MFA), lets users authenticate using existing enterprise credentials. New accounts are created automatically on first sign-in through just-in-time (JIT) provisioning, removing the need for manual setup.
Role-based permissions
Circuit uses role-based access controls (RBAC) to manage who can access information across teams, distributors, dealers, franchisees, and external partners. Connected systems respect existing permissions, so users only see the content they're already authorized to access.
Our security practices
Secure development
Security is integrated throughout our software development lifecycle (SDLC), with security reviews built into how we design, build, and release the platform. Circuit is hosted in AWS US regions.
Monitoring & response
We continuously monitor our environment, conduct regular third-party penetration testing, and maintain documented incident response procedures. If customer information is affected, impacted customers are notified in accordance with our contractual and regulatory obligations.
