Skip to content
Security and trust

WiFi security your auditors can check, line by line

ISO 27001 and Cyber Essentials Plus. Consent recorded for GDPR and CCPA. 99.999% uptime, in-region on Google Cloud. Zero data breaches since 2012.

  • ISO 27001 and Cyber Essentials Plus
  • 99.999% uptime
  • Zero breaches since 2012
  • In-region Google Cloud

99.999% is the uptime the Purple platform runs at. 99.9% is the cloud RADIUS SLA in your contract: the floor we commit to in writing. Multi-region failover across the UK, EU and US sits behind both.

Illustration
Book my design session

Trust pack

What is in the trust pack

Everything a security review asks for first, without booking a call.

  • ISO 27001 certificate and scope
  • Cyber Essentials Plus certificate
  • Data processing agreement
  • Sub-processor list
  • Data residency: UK, EU and US regions on Google Cloud
  • PCI DSS position
Illustration

What we hold, and where your data lives

  • ISO 27001

    Certified information security management.
  • Cyber Essentials Plus

    Independently tested controls.
  • GDPR and CCPA

    Consent recorded per sign-up; you choose the fields and Purple acts as the processor.
  • In-region on Google Cloud

    Cloud RADIUS regions in the UK, EU and US, with multi-region failover.
  • Zero data breaches since 2012

    A record we intend to keep.
  • 99.999% uptime

    99.999% is the uptime the Purple platform runs at. 99.9% is the cloud RADIUS SLA in your contract: the floor we commit to in writing. Multi-region failover across the UK, EU and US sits behind both.
  • Keys stay on the device

    With EAP-TLS, the private key stays in the device's secure hardware.

Your evidence

Evidence for your own audits

Every accept and reject is logged with its reason and streamed to your SIEM, as evidence for ISO 27001 A.5.15, A.5.18, A.8.15 and A.8.16, Cyber Essentials, and PCI DSS Req 8 and 10.

Illustration

Add-on: Purple Shield

Make this network safer and faster with Purple Shield

Purple Shield bolts onto Access or runs standalone. Set a different DNS policy per VLAN and by time of day, so staff, guests and residents each get the filtering that fits them, with dashboard analytics. Page loads up to 500% faster and 20 to 40% less web traffic. Try it free for 30 days.

Illustration

FAQ

Common questions

Where is our data held?

In-region on Google Cloud, with cloud RADIUS regions in the UK, EU and US.

Which certifications does Purple hold?

ISO 27001 and Cyber Essentials Plus.

Where does Purple sit in our PCI DSS scope?

Purple never touches payment card data. Card machines sit on their own keyed network and VLAN, and every authentication is logged as evidence for PCI DSS Req 8 and 10.

Why do you show 99.999% and 99.9%?

99.999% is the uptime the Purple platform runs at. 99.9% is the cloud RADIUS SLA in your contract: the floor we commit to in writing. Multi-region failover across the UK, EU and US sits behind both.

Bring your security questionnaire. Leave with it answered.

Send it ahead with the trust pack beside it, and a Purple engineer works through it with you, line by line, in a 45-minute design session.

  1. Get your three-SSID plan in 45 minutesTell us what runs on your WiFi today, and a Purple network engineer maps it with you.
  2. Map your SSIDs onto threeOpen, secure and xPSK, on the access points you already own. You leave with the plan.
  3. Prove it on one site firstJudge the result on tickets and audit evidence, then roll out.

Your design session

45 minutes. Your estate. A plan you keep.

Led by a Purple network engineer. No slides. You keep the plan.