Flank delivers enterprise-grade trust and governance across every action, thanks to SOC2 Type II security, granular human-in-the-loop controls, and isolated regional hosting – guaranteeing your data is never used for model training.

SOC2 Type II

Audit certifying the continuous operational effectiveness of Flank’s security controls.
ISO42001

Global standard for the responsible and ethical management of Artificial Intelligence (AI).
GDPR

EU regulation governing the protection and processing of personal data.
CCPA

California law granting control over personal data & the right to opt out of its sale or sharing.

Flank already works with enterprises in heavily regulated industries.

Through our partnership with Flank, we’ve embedded agents that [autonomously] handle the drafting, review, and negotiation of NDAs, DPAs, service agreements, IMAs, and more.

Customers
20+
Customers
Enterprise
Simmons & Simmons office

How we deploy legal agents safely

Supervision

Granular approval thresholds, escalation rules, and human-in-the-loop checkpoints as standard.

Controls

Flank includes role-based access, SSO with all major IdPs, audit logs, and agent configurations as standard.

Security

We're SOC2 Type Il certified with dedicated regional tenants for every customer, with bank-grade security.

Compliance

Flank is GDPR, CCPA, and ISO 42001 compliant across the organisation.


Hosting

Your data is contained within your chosen region, in a dedicated tenant on GCP or Azure.

Data Privacy

We never use your data for training. We have zero data retention clauses with all LLM providers.

Scale your legal capacity without extra headcount – and keep your data private and secure.