Want more control over your search setup? Discover our flexible infrastructure pricing.

Go to homeMeilisearch's logo
Back to articles

Meilisearch is now SOC2 Type II compliant: A big step for trust and security

We are bringing even stronger data security and trust to your search experience. Learn what this means for you.

28 Aug 20257 min read
Clémentine Urquizar
Clémentine UrquizarHead of Engineering at Meilisearch
Meilisearch is now SOC2 Type II compliant: A big step for trust and security

At Meilisearch, our main goal is simple: give developers and businesses a super-fast, really helpful, and easy-to-use search experience. While making our search engine awesome is what we do, keeping your data safe and private is just as important.

This has been our focus since Day 1 of Meilisearch, but we didn’t have an official way to attest it. Today, we're excited to share some big news that shows how serious we are about this:

Meilisearch has successfully passed its SOC2 Type II compliance check!

This isn't just a fancy attestation – it shows how much we care about keeping your data secure and running things smoothly. For you, our users, this means you can feel even more confident that your important data is safe with us, thanks to our strong and regularly checked systems.

Also, we have to mention that this wouldn’t have been possible without the help of our partners from Prescient Security and Vanta, who greatly helped us throughout the audit process.

Understanding SOC2 Type II compliance

So, what exactly is SOC2 Type II?

It's basically an audit standard from the AICPA (that's the American Institute of Certified Public Accountants). It checks how well a service company handles things like security, making sure stuff is available, keeping data accurate, and protecting private info.

Getting Type II compliant means an independent auditor didn't just look at our systems once: they actually tested how well they worked over a prolonged period of over six months.

This tough audit process digs deep into how we manage customer data, focusing on five key areas:

  • Security: This is all about protecting our systems from people who shouldn't have access. Think network safety, who can get in, and spotting any intruders. (Officially, this was the focus of the audit. Nevertheless, we made improvements to all 5 areas as a result of it!)
  • Availability: This means our systems, products, and services are there when you need them, just like we promise. It covers how we keep things running, recover from problems, and handle unexpected issues.
  • Processing integrity: This checks if our data handling is complete, correct, on time, and approved. It's about making sure your data is accurate and doesn't get messed up.
  • Confidentiality: This is about keeping sensitive information private and safe from being seen or shared without permission. It includes things like encryption and limiting who can see what.
  • Privacy: This looks at how we collect, use, keep, share, and get rid of personal information, making sure we follow our own privacy rules and general privacy guidelines. It's all about how we handle your personal data.

SOC2 Type II is the 'gold standard' for security because it gives you a clear, independent stamp of approval that a company is serious about protecting data. It's not just about having rules, it's about proving those rules actually work all the time.

Meilisearch’s commitment to security

Our journey to SOC2 Type II compliance was a natural step for Meilisearch because we’ve always been about keeping your data safe.

From the very beginning, we’ve focused on building a product and a company that truly cares about your data’s safety and privacy. This focus is built into everything we do – how we develop our products, how we run our operations, and even our company culture and processes.

To meet the tough requirements, we put in place and thoroughly tested a bunch of controls and measures for all the important areas:

  • Security: We have strong controls to make sure only authorized people can get into our systems and access sensitive data. Our setup is protected by advanced tools that spot and stop threats, and we have a solid plan to quickly deal with any security issues. We also regularly check for weaknesses and fix them before they become problems.
  • Availability: Meilisearch is built to be always on and reliable. We constantly watch our systems to make sure they’re running and available when you need them. We’ve also got comprehensive backup and recovery plans that we test regularly, so we can get things back up and running fast if something unexpected happens.
  • Processing integrity: We have strict rules for how we handle data to make sure it’s accurate, complete, and done the right way. Our development and release processes include automated checks to prevent errors and keep your data in good shape throughout its journey with us.
  • Confidentiality: Keeping your sensitive information private is super important to us. We encrypt your data when it’s stored and when it’s moving around. We also have clear rules about what data is confidential and limit who can see it, only giving access to those who absolutely need it. Everyone on our team gets regular training on how to handle sensitive information the right way.
  • Privacy: Meilisearch is all about handling personal information properly, following global privacy rules. Our privacy program makes sure we’re open about how we collect and use data, gives you control over your own data, and sticks to relevant privacy laws. We have clear steps for how long we keep data, how we make it anonymous, and how we securely get rid of it.

We don't just do security to tick boxes. We keep investing in the best security tech, do regular internal checks, and make sure everyone on our team thinks security first. This proactive approach helps make sure Meilisearch stays a reliable and secure platform for all your search needs.

What This Means for You: Our Users and Customers

Meilisearch getting SOC2 Type II compliant ensures you don’t just have to trust our word (although you can totally do 😉) and that the following perks are indecently verified for you, our awesome users and customers:

  • More trust and confidence: This audit is like an independent stamp of approval that Meilisearch has solid systems in place to protect your data. You can feel even better about our security and know your information is in good hands.
  • Better data protection: Because we stick to SOC2 Type II standards, you can be sure that your data – whether it’s product lists, user details, or anything else important – is handled with super care and kept safe from anyone who shouldn’t see it.
  • Easier for your own compliance: For many companies, working with vendors who are SOC2 compliant is a must for their own rules and regulations. Our attestation makes it simpler for you to get internal approval and helps you keep up with your own compliance needs.
  • Less risk for you: When you use a search solution that’s SOC2 Type II compliant, you greatly lower the chances of data breaches or security hiccups. This proactive way of handling security means fewer potential problems and helps keep your business looking good.
  • A leg up on the competition: In today’s world, where data safety is a big deal, choosing a search provider with proven security credentials gives you an edge. It shows your own customers that you care about security and helps build their trust.

The road ahead: always getting better

Achieving SOC2 Type II compliance is a huge win, but for us at Meilisearch, it's not the finish line – it's a major milestone on an ongoing journey.

(It’s not the beginning either, as security is deeply ingrained in the architecture of the product and the company.)

Security isn't a one-and-done thing, it's a continuous process of learning, adapting, and improving.

We're always looking for ways to make Meilisearch even more secure and reliable. You can expect us to keep investing in top-notch security practices and exploring new certifications that further strengthen our commitment to your data. We're passionate about building a search solution you can truly trust, and that means constantly pushing ourselves to be better.

Got questions about our security? Want to dive deeper into our audit report (under NDA, of course)? Don't hesitate to reach out to our team. We're always happy to chat about how we keep your data safe.

Conclusion: your trust, our priority

So, there you have it! Meilisearch is officially SOC2 Type II compliant. This is a big deal for us, and we hope it’s an even bigger deal for you. It means we’re serious about protecting your data and providing a search experience that’s not just fast and relevant, but also incredibly secure.

We really value your trust. We promise to be open, dependable, and always put your data security first. If you haven’t already, we invite you to experience the power and peace of mind that comes with Meilisearch. Try it out, and see how easy and secure search can be!

Ready to take search security to the next level?

Chat with our Sales team to see how Meilisearch can protect your data and power your business. No jargon, just real answers and a secure solution.

Introducing the Meilisearch Enterprise Edition license

Introducing the Meilisearch Enterprise Edition license

Introducing the Meilisearch Enterprise Edition license

Meilisearch July updates

Meilisearch July updates

Your monthly recap of everything Meilisearch. July 2025 edition.

Laurent Cazanove
Laurent Cazanove31 Jul 2025
Meilisearch June updates

Meilisearch June updates

Your monthly recap of everything Meilisearch. June 2025 edition.