PlanetGraph | AI-Native Graph Database
Trust Center
PlanetGraph is built for controlled data sharing, auditability, and AI-native graph workflows. This trust center summarizes our controls, legal resources, and compliance roadmap.
[**Security**
Technical safeguards, encryption, access control, audit logging, and incident response posture.](/content/security/index.html) [**Privacy Policy**
How PlanetGraph collects, processes, protects, and retains data.](/content/privacy/index.html) [**Terms of Service**
General terms governing use of PlanetGraph.](/content/terms/index.html) [**DPA**
Data processing terms for enterprise customers processing personal data through PlanetGraph.](/content/legal/dpa/index.html) [**Subprocessors**
Service providers used to host, secure, authenticate, email, and process selected AI workflows.](/content/subprocessors/index.html) [**Data Residency**
Current hosting regions and enterprise residency options.](/content/data-residency/index.html) [**SOC 2 Readiness**
Roadmap for SOC 2 readiness activities and control areas.](/content/soc2-roadmap/index.html)
Current Posture
- Customer graph data is protected with transport encryption, encryption at rest, property-level access controls, and audit logging.
- Searchability and returnability are separate controls. Customers decide which properties can be searched or embedded.
- Owner-only node and edge visibility controls help prevent hidden resources from being discoverable by other accounts.
- Enterprise customers can request a DPA and security review materials through legal@planetgraph.ai.
Compliance Roadmap
PlanetGraph is preparing a SOC 2 readiness roadmap. We are not currently claiming SOC 2 certification, CASA assessment completion, or other third-party audit completion for PlanetGraph itself. App-specific Google reviews or assessments for applications built on PlanetGraph are separate from PlanetGraph platform compliance.
Google-Derived Data
When customers use PlanetGraph with Google-derived data, PlanetGraph processes that data only to provide the configured service. Customers control which graph properties are searchable and therefore eligible for embedding generation. Content is not sent to OpenAI for embeddings unless the customer has configured that content to participate in search.
Security and Legal Contacts
- Security questions: security@planetgraph.ai
- Privacy questions: privacy@planetgraph.ai
- Legal and DPA requests: legal@planetgraph.ai