Legal
Glean provides an enterprise Work AI Platform that sits horizontally across Customer’s systems and data, connecting to the business applications, content repositories, and data sources that Customer selects. The Service enables Users to find knowledge, generate content, and automate work with AI in an enterprise context, while maintaining the identity, access controls, and sharing configurations of each Connected Application. Glean delivers an open platform with extensible connectors, APIs, and configuration options, including Customer-controlled hosting choices and support for multiple third-party large language models, operated in accordance with Glean’s security, privacy, and compliance commitments.
SOC 2 Type II
Glean is SOC 2 Type II certified, the most comprehensive attestation that our systems are designed and independently audited to keep customers’ sensitive data secure, available, and confidential.
ISO/IEC 27001
Glean is certified to ISO/IEC 27001, the leading global standard for information security management, ensuring robust, independently validated controls for risk assessment, mitigation, and compliance.
ISO/IEC 42001
Glean is certified to ISO/IEC 42001:2023, the leading international standard for AI management systems, demonstrating our commitment to responsible, well‑governed AI with rigorous risk assessment, mitigation, and oversight.
Secure Encryption
All customer data is encrypted at rest with FIPS 140-2 validated crypto module utilizing AES 256 bit encryption. All data in transit is encrypted using TLS 1.2+.
HIPAA compliant
Customers' sensitive health information is maintained and secured in accordance with the Health Insurance Portability and Accountability Act (HIPAA) of 1996.
GDPR compliant
Customers’ personal information is maintained and secured in accordance with the EU's General Data Protection Regulation (GDPR).


