TRUST & SECURITY
Safe
and
secure
transactions.

At Yuno, security is a top priority. Users trust us with their sensitive data, and we continuously evolve our security measures to meet the highest standards of the global financial industry.

PCI DSSISO 27701ISO 27001SOC 2
COMPLIANCE
Built
on
four
key
pillars.

Compliance is deeply ingrained in our corporate culture and operational practices. Our compliance framework is built on four key pillars.

yunoPCI DSSCompliance01

PCI DSS

Yuno complies with PCI DSS v4.0, one of the most stringent security standards in the payment industry, ensuring secure payment card processing.

Download PDF
yunoISO 27701Compliance02

ISO 27701

We are aligned with the protection and privacy of processed data based on the principles established in GDPR (General Data Protection Regulation) for the protection of personal data by being ISO 27701 compliance.

Download PDF
yunoISO 27001Compliance03

ISO 27001

Yuno is also ISO 27001 certified which demonstrates our commitment to operating a mature security program.

Download PDF
yunoSOC 2Compliance04

SOC 2

Yuno is SOC 2 Type 2 compliant, guaranteeing strict controls over security and privacy.

Download PDF
INFRASTRUCTURE
Secure
&
resilient
infrastructure.

Yuno's infrastructure is built on the AWS Well-Architected Framework, ensuring top-tier security, reliability, and encryption. With industry-leading protections for data in transit and at rest, we safeguard every transaction with the highest security standards.

01

Infrastructure Security

Built on the AWS Well-Architected Framework, leveraging audited AWS data centers. Robust physical, environmental, and infrastructure protections ensure security, reliability, and operational excellence at every layer.

02

Data in Transit

All data is transmitted through encrypted channels using TLS 1.3, ensuring the highest level of protection. This safeguards internal and external communications, mitigating risks from weaker protocol versions.

03

Data at Rest

Sensitive vault data is encrypted with AES-256. Each confidential record is hashed with SHA-512 to generate irreversible, unique records, then encrypted with a separate, randomly generated encryption key.

PRODUCT SECURITY
Robust
&
proactive
product
security.

Yuno ensures data protection through strict access controls, a secure development lifecycle, and continuous security testing. With proactive vulnerability management, penetration testing, and a bug bounty program, we stay ahead of emerging threats to keep our platform secure.

01

Data Access Monitoring

Access is governed by the principle of least privilege. Role-based controls and enforced 2FA and VPN ensure every employee operates within their strict scope of duty — no data exposure beyond what's needed.

02

Software Development Lifecycle

A continuous, secure build and release process informed by OWASP. New features are peer-reviewed for security issues, and a dedicated QA team analyzes all code before deployment into production.

03

Security Testing and Vulnerability Management

Regular external penetration tests plus the HackerOne bug bounty program identify vulnerabilities early. A patch management process triages and remediates findings based on severity, in a timely manner.

Background Paths
Background Paths
Yuno's
commitment
to
security
transparency.
Go to Trust Security Center

Learn about our commitment to security and compliance. Visit our Trust Security Center for policies, certifications, and more.

LET'S TALK
Powering
the
future
of
financial
infrastructure.

See how AI agents can transform your payment stack.

Book a demo