Compliance & Security

Last updated: November 2, 2025

Deployment models: VPC / Private Cloud On-prem / Air-gapped Sovereign Cloud Bring-your-own-model

We follow a shared responsibility model. Sphari secures the platform components we operate; customers secure their environment, identity, endpoints, and data classification policies.

Safeguards

Regulated Data & BAAs/DPAs

We do not accept PHI or other regulated data unless we have a signed Business Associate Agreement (BAA) or Data Processing Addendum (DPA) authorizing such processing and defining responsibilities. Without those terms, you must not upload regulated datasets.

Customer Responsibilities

Vulnerability Disclosure

Report security issues to MV@sphari.info with a detailed description and steps to reproduce. Do not publicly disclose until we confirm a fix or mitigation.

Contact

Sphari LLC
P.O. Box (Mail only)
Royal Palm Beach, FL 33411
Email: MV@sphari.info