Skip to main content

Legal index

Orbit’s legal and trust surfaces span two properties. Binding documents — the privacy policy, terms of service, and Trust Center — are published on the marketing site; the compliance guides on this docs site describe the tenant-owned controls you operate. This page is the index across both.
This page is a directory, not legal advice. Your obligations depend on where your end users live and what data you process — confirm with qualified counsel.

What’s legally public on Orbit

Platform compliance controls

The documents above describe Devotel’s commitments. The guides below describe the tenant-owned controls you operate — consent capture, opt-out suppression, data-subject requests, and the compliance posture checks that gate sending.

Compliance posture overview

Per-jurisdiction gates, quiet hours, and the posture check that runs before every send.

SOC 2 control mappings

Which controls are platform-owned and which stay with your tenant.

HIPAA on Orbit

The BAA boundary and the controls for PHI workloads.

Data subject requests (DSAR)

Operator-filed and self-service DSAR intake, and the fulfilment pipeline.