SOC 2 Type IIISO 27001GDPR-ready
Compliance-first integration detail for enterprise buyers
Security, privacy, and legal proof points curated for procurement teams evaluating the Nextbase ↔︎ Horizon integration.
SOC 2 Type IIGDPR & CCPA coverageField-level encryption
Compliance summary
Key assurances for security, privacy, and procurement teams.

Row level security

Granular policies across tables ensure only region-specific data syncs to Horizon.

Encryption

TLS 1.3 in transit, AES-256 at rest, and customer-managed keys for enterprise tenants.

Audit cadence

Annual SOC 2 Type II attestation, quarterly penetration tests, and continuous monitoring.

Compliance contacts
Fast-track responses for questionnaires and reviews.

Security lead

security@nextbase.com

Legal & privacy

legal@nextbase.com

Data protection officer

dpo@nextbase.com

Data flow and residency

Understand how information moves between Nextbase and Horizon, including retention boundaries.

Residency commitments
EU data processed within Frankfurt region with failover to Dublin. Customer-managed keys supported for finance verticals.

Privacy commitments

Alignment with GDPR, CCPA, and industry-specific requirements.

Audit trail and monitoring

Sample logs, control coverage, and escalation workflows for compliance teams.

Documents

Downloadable evidence packages for legal, security, and procurement stakeholders.

Data Processing Addendum
Standard contractual clauses with optional HIPAA BAA addendum.
Download
SOC 2 Type II report
Signed NDA required for download.
Download

Compliance changelog

Version history for security controls, audits, and documentation updates.

Released 2024-10-02

Added regional KMS support and refreshed SOC 2 Type II audit evidence.