Security and data boundaries
MeroFoundry is operated by MERO Consulting Inc. on infrastructure we own and administer. This page describes what is true today. Where a control is not in place, it says so.
What must not be stored in it
Do not store Controlled Unclassified Information, source-selection information, ITAR or export-controlled technical data, payment card data, protected health information, biometrics, children's data, credentials, or government records requiring a compliance boundary we do not hold.
MeroFoundry is not FedRAMP authorised, is not a CMMC enclave, and has not completed a SOC 2 audit.
Safeguards
These are the controls we represent in our Privacy Policy. We do not claim more than this.
No method of transmission or storage is completely secure, and we cannot guarantee absolute security. Any breach-notification commitment applies only under a Data Processing Addendum or other agreement effective with the applicable customer.
Hosting
MeroFoundry runs on Linode LLC (an Akamai Technologies company) compute owned and administered by MERO Consulting Inc., in United States regions.
The Service is intended for U.S.-focused business use. We do not currently represent that it is configured for regulated international transfers.
Reporting a security issue
Write to security@merofoundry.com. It is monitored.
For more detail about MeroFoundry’s security and hosting, contact sales@merofoundry.com with your questions.