Is phoenix GDPR compliant, or SOC 2 compliant?
It could be possible that Phoenix itself does not make any explicit claims of being GDPR or SOC 2 compliant in the available documentation. Though I'm not entirely certain, it might be that compliance depends on how you self-host and configure Phoenix, as there is no formal assessment or certification for GDPR or SOC 2 mentioned for the open-source version. For enterprise needs like compliance, the Arize platform (the company behind Phoenix) may offer additional guarantees, but this is not detailed for Phoenix OSS itself according to the sources reviewed.Would you like more detail on how Phoenix handles data privacy or how Arize AX addresses compliance requirements?Sources: - https://arize-ai.slack.com/archives/C04R3GXC8HK/p1720623789.861679 Note: I wasn’t able to find highly relevant data sources, but above are a few potentially relevant links.
💡 Hint: Mention RunLLM in the thread for followups.
Hi Igor, from my understanding, if you run Phoenix fully locally and ensure that no personal data leaves your environment, your deployment can be operated in a GDPR-compliant way, but the product itself is not a certified data processor. 🔒[private user] are you able to answer in better depth?
OSS cannot be SOC 2 or GDPR compliant. Your hosting environment, configuration, operations, and data practices determine compliance.
And you have paid version? So it can be hosted on your side?
If you’d like to not have to think about nor be responsible/accountable for this, you can leverage Arize Ax
Yes!
is Arize Ax - SOC 2 or GDPR compliant?
Would you like me to connect you with a Solutions Architect to discuss it?
We have free, pro, and enterprise versions of it
Thanks, may be on later stage. What is the pricing in that case data stored on your side?
