Data privacy
Your documents and workspace data remain private and are never used to train general-purpose AI models.
Arca protects contracts, negotiations, and legal knowledge with enterprise-grade infrastructure, strict data controls, and safeguards designed for sensitive legal workflows.
Your documents and workspace data remain private and are never used to train general-purpose AI models.
Customer data is encrypted in transit and at rest using industry-standard protocols.
Arca runs on hardened cloud infrastructure with continuous monitoring and network isolation.
Role-based permissions, least-privilege access, and SSO protect sensitive legal work.
Detailed activity records support accountability, oversight, and customer review.
AI operates in secure processing environments designed to preserve confidentiality and human oversight.
Arca is SOC 2 Type II certified and supports SAML-based authentication, audit trails, data processing agreements, and privacy controls for regulated workflows.
Review the Security Policy, Data Processing Agreement, and Subprocessor List.
Does Arca use customer data to train AI models?
No. Arca does not use customer data to train general-purpose machine learning models.
Is Arca independently audited?
Arca is SOC 2 Type II certified, with independent audits validating controls for security, availability, and confidentiality.
Is a Data Processing Agreement available?
Yes. Arca offers a standard DPA covering processor and subprocessor relationships.
For security documentation or a vendor review, contact contact@arca.inc.