Compliance
Current Status
Lakehousecat does not currently hold any formal compliance certifications. The platform is in active development and preparing for initial market launch.
Roadmap
SOC 2 — Primary Goal
SOC 2 certification is the first and primary compliance objective. The process will begin after the MVP launch and first customer engagements are established. SOC 2 covers the trust service criteria of security, availability, processing integrity, confidentiality, and privacy.
Future Certifications
The following are planned for post-SOC 2 phases:
| Standard | Status | Notes |
|---|---|---|
| ISO 27001 | Planned | Information security management |
| GDPR | Planned | Required for EU market operations |
| CCPA | Planned | Required for California market |
| HIPAA | Not planned | Highly complex; not a near-term target |
Customer Responsibilities
Lakehousecat is deployed as a Kubernetes application in the customer's own cluster. This means:
- The customer's organization controls the underlying infrastructure
- Log retention, data residency, and access controls at the infrastructure level are governed by the customer's own policies
- Lakehousecat cannot and does not enforce compliance requirements at the infrastructure level
- Topics like data processing agreements, privacy impact assessments, and regulatory obligations depend on the customer's specific jurisdiction and use case
For regulated industries or specific compliance requirements, customers should conduct their own assessment of how Lakehousecat fits within their compliance framework.
Contact
For compliance inquiries or to discuss specific requirements, contact the Lakehousecat team through the support portal.