Security by Design
Our infrastructure is dedicated, isolated, and private by design. Workloads run in controlled environments, minimizing shared tenants and public routing.
SOC 2 Type II Compliant
Enterprise-grade Security for Web3 Infrastructure
Nirvana Labs maintains SOC 2 Type II compliance through an independent audit, providing independently verified security and operational controls across our products and services.
SOC 2 Type II
Assesses the design and operating effectiveness of controls over time across Security, Availability, Processing Integrity, Confidentiality, and Privacy.
Contact us to request access to the SOC 2 Type II report.
Ensuring Maximum Security
Data Security
API keys with IP filtering and resource-level action permissions, plus dashboard access restricted by IP filtering.
Single Sign-On (SSO) via SAML with domain verification, SIEM integration for centralized security monitoring, and SCIM for automated user provisioning.
Operational Security
We enforce multi-factor authentication (MFA) across all accounts, follow the principle of least privilege, and conduct routine security audits with continuous vulnerability scanning.
Our team undergoes regular security awareness training, and all endpoint devices are continuously monitored and hardened to maintain a secure operating environment.
Infrastructure Security
All workloads run on Nirvana-owned bare-metal servers within Tier III data centers, protected by network isolation, Firewall Rules, and DDoS mitigation systems.
Our private fiber network, Nirvana Connect, ensures traffic stays off the public internet for greater security, lower jitter, and predictable performance.
Continuous monitoring and automated alerts maintain 24/7 visibility and rapid response capabilities.
Vulnerability Reporting
We welcome responsible disclosure.
If you identify a potential issue, contact security@nirvanalabs.io.


