Security & Trust

Taama uses Customer Data to power multi-market compliance workflows — it is not sold. We apply TLS in transit, least-privilege access, and honest claims (no SOC 2 or ISO until formally achieved); report issues to contact@taama.ai.

Last updated: September 2026
Legal entity: Sieve Solutions, Inc. (dba Taama)
Security contact: contact@taama.ai (subject: Security)


Taama helps food and supplement teams run multi-market regulatory checks with clear, regulation-referenced outputs. Trust is how we handle your product data and access — not a marketing claim.


What Taama is (security-relevant)

Taama is an AI-assisted decision-support platform. Output helps your team evaluate ingredients, classification / go-to-market pathways, labels, claims, and dossier completeness across markets. You remain responsible for final regulatory decisions, filings, and qualified advice (see Terms Clause 3.2).


Principles


1. Purpose limitation — Customer Data is used to deliver and improve the Services as described in the Terms — not sold.
2. Least privilege — Production access is limited to people with a business need.
3. Defence in depth — Encryption in transit (TLS), access controls, monitoring, and operational reviews.
4. Customer control — Workspace admins decide who on your team can see assessments and documents.
5. Honest claims — We do not list SOC 2, ISO 27001, or similar certifications on this page unless and until they are formally achieved and approved for public mention. Ask during procurement for the current questionnaire / status.

Data we handle


Typical Customer Data includes formulas, specs, artwork/labels, claims copy, certificates, and registration materials. That content can be commercially sensitive. Treat uploads accordingly; do not submit unnecessary personal data about individuals.


Privacy and processor/controller roles are defined in the Terms (/terms) (Clauses 6 and 10) and summarised on Privacy (/privacy).

Technical and organisational measures (public overview)


Area · What we do
Transport security · TLS for connections to the Platform
Access control · Role-based access; production access limited to authorised personnel
Authentication · Customer-managed account credentials; you must protect them
Logging & monitoring · Operational and security-relevant event logging to support detection and response
Vendor / sub-processors · Infrastructure and productivity providers under contract; Customer authorises sub-processors per Terms
Change & release · Controlled updates to the Platform; material adverse reductions notified on a commercially reasonable basis
Vulnerability reports · Email contact@taama.ai with reproduction detail; allow reasonable time before public disclosure


This table is a summary for buyers, not a certification report or penetration-test letter.

AI and model use


• Identifiable Customer Data used to improve models is subject to your AI training opt-out (Terms Clause 6.5).
• Aggregated / de-identified data may still be used to improve the Service.
• Output is decision-support; do not treat it as an automatic legal determination.


What we are not

• Not a Halal certification or Halal compliance product
• Not a substitute for your RA team, counsel, or local agents
• Not claiming government endorsement by naming regulators (TGA, HSA, BPOM, FDA, etc.)


Enterprise / procurement


For security questionnaires, DPAs, or custom contractual schedules: email contact@taama.ai. Enterprise terms may be set in an Order Form or MSA (Terms Clause 3.5).

Incident reporting


If you believe you have found a vulnerability or suspect unauthorised access involving Taama: email contact@taama.ai with subject “Security” and enough detail to investigate.


Book a conversation

https://cal.com/taama/30min — no free trial as a standard offer.

There is no free trial. Request our security questionnaire when you book a demo.

Book a demo

Whether you’re navigating TGA and FSANZ in ANZ, HSA in Singapore, BPOM in Indonesia, NPRA in Malaysia, EFSA in Europe, or FDA in the US, Taama runs the checks.

© 2026 Taama. AI-powered compliance for food and supplement brands.

Whether you’re navigating TGA and FSANZ in ANZ, HSA in Singapore, BPOM in Indonesia, NPRA in Malaysia, EFSA in Europe, or FDA in the US, Taama runs the checks.

© 2026 Taama. AI-powered compliance for food and supplement brands.

AI-powered food regulatory compliance platform for global CPG brands. Automate FDA, EFSA, SFA, FSANZ, and worldwide food regulations.


© 2026 Taama. AI-powered compliance for food and supplement brands.