Leo for corporate use - security documentation & compliance materials

Hi everyone,

I’d like to propose using Brave Leo at my company for work purposes. Our Security team has already done a preliminary review and said that Leo is indeed one of the most privacy-focused AI tools available - which is a great starting point.

However, we’ve hit a wall: the company requires concrete evidence that Brave actually enforces the data protection principles it describes. The information currently available on the website isn’t sufficient for our Security team to formally approve the tool for corporate use.

With that in mind, I have two questions:

1. Is there any existing documentation or certifications available?

2. If not - is this something Brave is considering?
Many companies with strict security requirements would benefit greatly from a dedicated trust/compliance page or a documentation package specifically aimed at enterprise or business adoption. Is this on the roadmap?

Would love to hear your thoughts or any plans you might have in this direction. Thanks!

Hello! We appreciate your interest. The Brave API is SOC2 compliant. https://brave.com/blog/soc2/

The Trust Center site can be found here, which includes more details: https://trust.brave.app/

If your security team has any questions, please feel free to email privacy@brave.com and we can answer any concerns they may have.

Thanks!