Security & Trust
Effective September 5, 2026
Infrastructure
Career Launch Group runs on Amazon Web Services (AWS). AWS maintains independent, third-party attestations for its infrastructure, including SOC 2 and ISO 27001, available through AWS Artifact. These cover the infrastructure layer; application-layer controls are our responsibility and described below.
Our controls
- encryption in transit (HTTPS) and at rest;
- authentication via a managed identity provider; each user's data is partitioned to their own account;
- server-side handling of all secrets and API keys (never exposed to the browser);
- automated removal of direct identifiers from AI messages before storage;
- an AI safety guardrail and an explicit crisis-detection protocol on the coach;
- rate limiting and a web application firewall on AI endpoints;
- least-privilege access and monitoring.
Subprocessors
We use a small set of vendors to run the Service: AWS (hosting, authentication, database, and the Amazon Bedrock AI models), Stripe (payments), O*NET Web Services (interest profiler), and YouScience (optional aptitude testing, purchased separately by you). Each is engaged under its own terms and data-protection commitments.
For schools and districts
We can support district security and privacy reviews and student-data-privacy agreements. Contact Support@careerlaunchgroup.com to request documentation.
CLG Technologies, LLC · Questions? Contact Support@careerlaunchgroup.com