Your trust means a lot to us. That’s why we use sophisticated, banking-level encryption protocols to keep your data secure.
We encrypt your data at rest and in-transit.
Data at-rest is backed up and encrypted using AES-256 GCM encryption with root keys stored in an HSM.
We use modern, secure SSL/TLS settings and HTTP headers to ensure you can safely and securely browse our site.
We never store passwords in plaintext.
We filter and sanitize all user input to prevent code injection and XSS attacks.
Code is carefully written and reviewed to ensure proper security practices are followed.
Access to user data is strictly protected by operational procedures and user data is never shared without permission.
FreeWill is proud to share the successful completion of the AICPA Service Organization Control (SOC) 2 Type II audit, conducted by Sensiba LLP). SOC2 Type II compliance underscores FreeWill’s continued commitment to privacy and security in safeguarding customer data, and ensures our security practices meet enterprise-level standards.
A copy of FreeWill’s 2025 SOC2 Type II report is available upon request. Please follow the steps listed on trust.freewill.com to request a copy.