Skip to content
Company - Trust Center

Security, privacy and compliance, in detail

Nexora is PDPL-aware by design. This is where we show our work - how we protect data, where it lives, and exactly where we stand on certifications.

How we protect your data

Everything, in writing.

Security and privacy aren't a page we bolted on - they're how the product is built. Here's what that means in practice.

Data protection & privacy

We handle personal data as your processor under a Data Processing Agreement, and only ever on your instructions. Our Privacy Policy sets out the details in plain language.

Security

Data is encrypted in transit and at rest. Access is least-privilege and logged, admin accounts support SSO and MFA, and sensitive-data guardrails keep regulated data out of the wrong flows.

Reliability

Nexora runs on managed regional cloud with a 99.95% uptime commitment for paid plans, automated backups and a tested disaster-recovery plan.

Data residency

Need data to stay inside a specific jurisdiction? The Local Data Storage add-on keeps it in-region on infrastructure aligned with regional regulator guidance - switched on, not procured over six months.

Consent & data-subject rights

Channel-specific consent capture, instant opt-out handling, and tooling to action access, correction and deletion requests across the platform.

Audit & transparency

Full audit logs record every change, send and consent event, so you can show a regulator exactly what happened and when.

Certifications & roadmap

Everything, in writing.

We only claim what we've earned. PDPL alignment and our DPA are available today; independent certifications are in progress, and we'll publish each one here the moment it's in hand.

PDPL-aligned

Consent, residency and data-subject controls mapped to Saudi Arabia's PDPL.

Available

Data Processing Agreement

Available on request, covering sub-processors, security and DSR support.

Available

SOC 2 Type II

Actively working toward it. We'll publish the report here once we're certified.

In progress

ISO 27001

On our roadmap. Until it's certified, we don't claim it - here's where we are.

In progress
Documents & policies

Everything, in writing.

Read our policies, or ask for our DPA, security overview and current sub-processor list - we'll get them to you quickly.

Responsible disclosure

Found something? Tell us.

We welcome reports from security researchers. If you believe you've found a vulnerability, email us with the details and we'll acknowledge it quickly, keep you updated, and credit your work once it's resolved.

Security contact

techsupport@usenexora.com

For DPA, security overview or sub-processor requests, email techsupport@usenexora.com.

Ready to reach every customer, everywhere?

Get set up with our team and see Nexora on your own data - in Arabic or English.