NewMCP ServerView docs
Compliance Hub

Compliance built for regulated industries

Lakehouse meets the most stringent compliance requirements across healthcare, financial services, government, and more. Access our compliance documentation, and compliance documentation.

Compliance

Industry-standard compliance

Our compliance standards demonstrate our commitment to maintaining the highest levels of security, privacy, and operational excellence.

Compliant

SOC 2

Compliant with security, availability, processing integrity, confidentiality, and privacy controls.

Last: OngoingNext: Continuous

Available Documents

  • SOC 2 Compliance StatementAvailable upon request
Compliant

HIPAA

Health Insurance Portability and Accountability Act compliance for healthcare data protection.

Last: OngoingNext: Continuous

Available Documents

  • HIPAA Compliance StatementAvailable upon request
  • Business Associate AgreementAvailable for enterprise
Compliant

GDPR

Full compliance with European Union General Data Protection Regulation requirements.

Last: ContinuousNext: Continuous

Available Documents

  • Data Processing AgreementAvailable upon request
  • Standard Contractual ClausesAvailable upon request
  • GDPR Compliance StatementPublic
Compliant

ISO 27001

Compliant with international standard for information security management systems (ISMS).

Last: OngoingNext: Continuous

Available Documents

  • ISO 27001 Compliance StatementAvailable upon request
Industry Solutions

Compliance for your industry

We understand that different industries have unique compliance requirements. Lakehouse is designed to meet the specific needs of regulated sectors.

Healthcare

HIPAAHITECH21 CFR Part 11

Comprehensive healthcare compliance with signed BAAs, audit controls, and secure PHI handling.

  • Business Associate Agreement (BAA)
  • PHI encryption at rest and in transit
  • Access logging and audit trails
  • Minimum necessary access controls

Financial Services

SOXGLBAPCI DSS

Financial data protection with rigorous access controls and audit capabilities.

  • SOX-compliant audit trails
  • Role-based access controls
  • Data retention policies
  • Encryption standards compliance

Government

FedRAMPFISMANIST 800-53

Government-grade security controls with data residency options.

  • FedRAMP authorization (in progress)
  • US data residency available
  • FIPS 140-2 encryption modules
  • Continuous monitoring

Legal

ABA GuidelinesLegal Hold

Legal industry compliance with privilege protection and matter management.

  • Attorney-client privilege protection
  • Legal hold capabilities
  • Chain of custody documentation
  • Secure external sharing
Document Library

Compliance documentation

Access our library of compliance documents, statements, and legal agreements. Some documents require an NDA or are available only to enterprise customers.

Security & Privacy

  • SOC 2 Compliance Statement

    Security compliance overview

    Upon request
  • Privacy Policy

    Data collection and usage practices

    Public
  • Security Whitepaper

    Technical security architecture

    Upon request

Legal & Contracts

  • Data Processing Agreement (DPA)

    GDPR-compliant data processing terms

    Upon request
  • Standard Contractual Clauses

    EU data transfer mechanisms

    Upon request
  • Business Associate Agreement

    HIPAA BAA for healthcare customers

    Enterprise only
  • Terms of Service

    Service usage terms

    Public

Compliance Statements

  • ISO 27001 Compliance Statement

    ISMS compliance overview

    Upon request
  • HIPAA Compliance Statement

    Healthcare compliance attestation

    Upon request
  • GDPR Compliance Statement

    EU compliance documentation

    Public

Data Processing Agreement

Our Data Processing Agreement (DPA) outlines how we process personal data on your behalf, ensuring compliance with GDPR and other data protection regulations. The DPA includes:

  • Standard Contractual Clauses (SCCs) for international transfers
  • Technical and organizational security measures
  • Sub-processor list and notification procedures
  • Data subject rights handling procedures
  • Incident notification timelines
Request DPA

Audit Reports

Current and prospective customers can request access to our audit reports and compliance documentation.

SOC 2 Compliance Statement

Security compliance overview and controls

ISO 27001 Compliance Statement

ISMS compliance overview

Security Architecture Overview

Technical security documentation

Request Audit Reports

Need custom compliance support?

Our compliance team can help with your specific requirements.