Security

Updated September 13, 2026 · How LIFE1 protects your information

What follows is what we actually do today. We describe our controls plainly and do not claim certifications we do not hold.

1. Encryption

2. Authentication and authorization

3. Infrastructure

4. On your device

5. Monitoring and response

6. Compliance posture

LIFE1 follows PIPEDA and Quebec Law 25 in Canada, the CCPA/CPRA in California, and is designed to GDPR principles. We are not a HIPAA covered entity and do not hold SOC 2 or ISO 27001 certification at this time. We will update this page if that changes.

7. Responsible disclosure

If you believe you have found a security vulnerability, email help@life1.ai with the subject "Security". Please give us reasonable time to investigate and fix before public disclosure; we will acknowledge your report within two business days and keep you informed. Do not access other users' data or degrade the Service while testing.