Informational

Compliance

How Tagile approaches regulatory compliance today, and where we are heading. We separate current practices from future goals so you always know which is which.

Last updated: 22 July 2026  ·  Effective from: 22 July 2026  ·  Version 1.0

GDPR

Tagile is built to operate under the GDPR. We offer a Data Processing Agreement, publish our subprocessors, and support customers in meeting their own obligations, including data subject requests.

Privacy by design and data minimisation

We consider privacy when designing features and aim to collect only the data needed to deliver the Service. Monitoring focuses on publicly available, professional information selected by the customer.

Processor and controller roles

Tagile is controller for its own website, account and billing data, and processor for customer controlled data inside the Service. The split is described in the Privacy Policy.

Human oversight

Tagile is designed as decision support with a human in the loop: AI generated suggestions are drafts that require human review and approval before anything is shared externally.

EU AI Act readiness

Tagile assesses the requirements that apply to its use of AI and reviews its practices as the EU AI Act and related guidance develop. We design for transparency and human oversight, which are central themes of the regulation.

Security governance

Security responsibilities are defined internally, access follows least privilege, and security controls are reviewed as the product and threat environment evolve. See Security at Tagile.

Supplier management

We assess providers before engaging them, bind subprocessors to data protection obligations, and review the provider list as the product evolves.

Internal risk reviews

We conduct internal risk and vulnerability reviews of our digital environment and address findings based on severity.

Current certifications

Tagile is not currently certified under ISO 27001 or SOC 2. We draw on the structure of such frameworks in how we work, but we do not claim certification or formal alignment with every control.

Future ambitions

Formal certifications may be considered as the company and enterprise requirements grow. Any decision to pursue a specific certification will be communicated when it is an actual commitment. We do not place certifications on our public roadmap before that point.

Contact

Compliance questions? Contact hello@tagile.ai.

Questions about this page?

Contact us at hello@tagile.ai.