cd /news/ai-safety/tessl-is-soc-2-type-2-compliant · home › topics › ai-safety › article
[ARTICLE · art-138527] src=tessl.io ↗ pub= topic=ai-safety verified=true sentiment=↑ positive

Tessl is SOC 2 Type 2 compliant

Tessl completed a SOC 2 Type II audit conducted by independent auditor A-Lign, the company announced. The audit covers access controls, continuous infrastructure monitoring and incident response, employee background checks and security training, and secure software development for the platform, which lets AI agents write, review, and maintain production code. Tessl said it is now working toward ISO 27001 certification, with its internal audit starting this month and an external audit in November.

by read2 min views24 publishedSep 21, 2026
Tessl is SOC 2 Type 2 compliant
Image: Tessl (auto-discovered)

AI SECURITY & SAFETY

We're excited to announce that Tessl has completed our SOC 2 Type II audit.

Richard Tweed

Today, we're excited to announce that Tessl has completed our SOC 2 Type II audit.

This milestone underscores our commitment to protecting customer data and gives you clear visibility into the security practices behind the platform. As the Security & Compliance lead at Tessl, I want to share what this means for you and how we'll keep raising the bar as we grow.

Visit the Tessl Trust Center to view our security documentation and request our SOC 2 report.

Why SOC 2 Now?

Tessl is built to let AI agents write, review, and maintain production code alongside your team. That only works if you can trust the platform with your codebase from day one. As enterprise teams bring Tessl into their software factories, independent verification of our security posture stopped being optional.

What's in the Report?

The report, conducted by an independent auditor (A-Lign), covers the controls we run day to day to protect your data:

  • Strict access controls. Access to customer data is limited to those who need it, with regular reviews to keep those controls tight as we scale.
  • Continuous monitoring and incident response. We monitor our infrastructure and cloud configuration continuously, with automated alerting and a defined incident response process, so issues get caught and handled fast.
  • Employee security awareness. Every employee goes through background checks before joining and ongoing security training after, so security stays part of how the team operates, not a once-a-year exercise.
  • Secure software development. Every new repository is brought into scope for our security controls by default, with code review and vulnerability scanning built into the development process itself, agents included.

Ongoing Efforts

SOC 2 is one part of a broader program. We're now working toward ISO 27001 certification, with our internal audit starting this month and external audit in November.

If you're a Tessl customer or considering Tessl for your team, visit our Trust Center to request the full SOC 2 Type II report, or talk to our team about your security requirements. COPY & SHARE

Richard Tweed

Richard Tweed is the security, compliance and infrastructure person at Tessl. He's the OWASP Project Lead for Github-Workflow-Updater-Extension and the lead maintainer of kube-audit-rest.

READING

·

0%

COPY & SHARE

Richard Tweed

Richard Tweed is the security, compliance and infrastructure person at Tessl. He's the OWASP Project Lead for Github-Workflow-Updater-Extension and the lead maintainer of kube-audit-rest.

── more in #ai-safety 4 stories · sorted by recency
── more on @tessl 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
→ Live at https://your-agent.zahid.host ✓
Get free account → Pricing
from €0/mo · no card required
LIVE [news/tessl-is-soc-2-type-…] indexed:0 read:2min 2026-09-21 · —