Secure, fast setup—loading your page.
Secure, fast setup—loading your page.
Ready to try it? Start free — no card required.
Start freeLearn how we protect waiver data with secure hosting, access controls, encryption, subprocessors, retention practices, and operational safeguards—plus clear paths for incidents and privacy requests.
Trust center
Review current controls, response pathways, and legal artifacts that are available today for buyer diligence.
Controls and access governance
Role-based permissions, organization-scoped records, and tamper-resistant audit events are implemented in production. Request the current control summary through the security contact listed on this page or your account contact.
Data handling and retention
TLS protects data in transit and provider-managed encryption protects storage. DPA terms, retention expectations, and deletion workflows are available on request for procurement review.
Incident response expectations
Security reports are triaged by severity with response targets communicated during intake. Use the security contact on this page to report incidents and request notification commitments.
Assurance materials
Current materials include a security summary and standard legal/privacy documentation. Request package access under NDA for evaluator and procurement stakeholders.
Uptime & incidents
Follow service status and incident history on our status page.
Current assurance materials and response contacts are available now through the security overview. Independent attestations (including SOC 2) may be added over time as the assurance program expands.
This overview is informational and does not replace your agreement, signed DPA, or completed questionnaire. Booking integration specifics (including webhook verification behavior) are documented on the integrations page.
Domain 01
Domain 02
Domain 03
Domain 04
How quickly are security incidents acknowledged?
We acknowledge inbound security reports according to severity and communicate next steps through the reporting channel. Send reports to team@waivertrail.com to start formal triage.
Do you provide a DPA for business customers?
Yes. DPA review is available for applicable customer contracts. Request the latest DPA package via team@waivertrail.com or your account team.
How do we request data export or deletion?
Submit a privacy request through team@waivertrail.com. We confirm identity, scope the request, and provide deletion/export guidance tied to your agreement and legal obligations.
Can we discuss data residency or region-specific hosting?
Yes. Region requirements and contractual data-location commitments can be reviewed during enterprise procurement. Contact team@waivertrail.com to open that conversation.
How do you communicate subprocessor changes?
Material vendor and processing changes are communicated through customer channels and agreement updates. Current subprocessor and processing location details are available via support documentation and by request at team@waivertrail.com.
What assurance documents can we review now?
Current materials include the security summary, legal/privacy terms, incident communication process, and architecture questionnaire responses for procurement review. Request the latest set through team@waivertrail.com.
Need procurement-ready security materials?
Request the current security summary, DPA pathway, and response contacts for your review team.