Security & Compliance

ToothFairyAI is an enterprise AI agents platform for regulated industries. Teams build, own and control sovereign autonomous agents with 60+ no-code templates, zero data retention, regional data residency, ISO 27001/42001 and HIPAA/GDPR compliance — on pay-per-use pricing from $5 with no licences, no seats and no model-provider lock-in.

Last updated: September 5, 2026

ISO certifications

ToothFairyAI maintains formal, auditable management systems and publishes both certificates:

Compliance posture

ToothFairyAI is built for regulated industries — local government, financial services, construction and healthcare — and its compliance posture covers the following frameworks:

Sovereign by default

Data is sovereign by default: on Serverless, all data is stored by default in the region you choose — Australia, Europe, or the Americas — and it stays in your chosen region unless you move it. Under a custom Enterprise agreement, you can add dedicated hosting on-premise or on your own cloud infrastructure.

Data handling

Model & supply-chain control

Security & Compliance documents

The following trusted references detail ToothFairyAI's security, privacy and compliance posture: