Comp AI vs Secureframe: privacy compared
Comp AI and Secureframe are both rated in compliance automation against the same 9 public criteria. Comp AI does better on open source. Comp AI is based in the United States (Five Eyes); Secureframe is based in the United States (Five Eyes).
| Criterion | Comp AI Our pick | Secureframe |
|---|---|---|
| Grade | Grade F F (38/100) | Grade F F (28/100) |
| Jurisdiction | United States Five Eyes | United States Five Eyes |
| Open source Is all the source code needed to run the product public? | Partial source | No |
| No trackers or telemetry Are the website and apps free of third-party trackers, with any analytics anonymous and any telemetry off by default? | No source | No source |
| No ads or data sales Is the product funded without advertising, ad targeting or selling user data? | Partial source | Partial source |
| Independent audit Has an independent security or privacy audit been published within the last three years? | Partial source | Partial source |
| Transparency report Does the provider regularly publish how many government and legal requests it receives and how it responds? | No source | No source |
| Tells users about requests Does the provider promise to tell users about requests for their data, unless a court forbids it? | No | No |
| TLS configuration Does the website pass the Qualys SSL Labs test with a grade of A or better? | Yes source | Yes source |
| Security headers Does the website pass the Mozilla HTTP Observatory test with a grade of A or better? | Partial source | Partial source |
| Modern web standards Does the website score 90% or higher on the Internet.nl website test? | Not tested yet | Not tested yet |
Summaries
Comp AI. Comp AI scores 38 out of 100 (grade F) on the compliance automation criteria. It meets 1 of 8 criteria: TLS configuration. It partly meets open source, no ads or data sales, independent audit and security headers. It does not meet no trackers or telemetry, transparency report and tells users about requests. It is based in the United States: Five Eyes member; subject to the US CLOUD Act. Automated tests: SSL Labs grade A and Mozilla HTTP Observatory grade B+.
Secureframe. Secureframe scores 28 out of 100 (grade F) on the compliance automation criteria. It meets 1 of 8 criteria: TLS configuration. It partly meets no ads or data sales, independent audit and security headers. It does not meet open source, no trackers or telemetry, transparency report and tells users about requests. It is based in the United States: Five Eyes member; subject to the US CLOUD Act. Automated tests: SSL Labs grade A+ and Mozilla HTTP Observatory grade B.