Security is the center of everything we build and do – our processes and systems are designed to protect our customers, their clients and their deals.
Our Australian servers and data localisation policy ensures all data is stored securely in Australia.
All data is hosted on ISO-certified infrastructure with industry-leading reliability, resilience and security.
Data at rest is encrypted using AES-256. Data in transit is encrypted with TLS 1.2 or higher.
Best-in-class coding standards, secure development practices and robust access controls are enforced across all systems.
Data is managed under rigorous privacy standards to maintain confidentiality and ensure full regulatory compliance.
Enterprise-grade SSO with SAML and SCIM compatibility to keep user data where you already know and trust.

DDLoop only collects and transmits:
1. Publicly available data – information that any member of the public may access, or purchase access to, via the internet (ie non-confidential and non-sensitive). For example, this would include ASIC searches (company extracts), PPSR search results, IP Australia trade mark searches and Google searches.
2. User inputted project identifiers – optional, pseudonymised information a user can input about a project (ie matter code names such as Project Cannon Ball or Project Red Sparrow or abstract matter numbers) that contain neither confidential Client nor law firm information.
The platform does not allow the user to upload documents to our platform, nor allow any direct interaction with any AI systems/models through prompts.
Your search data is yours. DDLoop does not use or share your data for purposes other than conducting the searches you request and to make sure we're giving you the best services possible.
We use third-party services (for example, the Australian Business Register) to conduct searches. Your searches are governed by the terms and conditions of those third-party services.
Of course! To request additional cybersecurity information, please reach out to support@ddloop.app