Autopilot

United States · www.autopilothq.com · 17 vendors

AutopilotHQ Inc. (formerly Autopilot, now Ortto) is a company that developed visual marketing software for automating customer journeys. It enabled marketers to capture and convert leads, connect with customers, and foster loyal buyers through various channels like email, web, SMS, and direct mail. The company has since rebranded to Ortto, evolving its platform to unify customer data, messaging, and analytics.

Resilience scores

Technology vendors

Services catalogue

3 services in catalogue across 3 categories; runs on 17 sub-vendors.

Insights

Last updated 2026-03-04 · revision 4

17 direct vendors, 228 subvendors

Direct vendors by controlling owner country (sample)

Subvendors by controlling owner country (sample)

Migration Readiness: 7/10

Assessed by AI based on technology stack characteristics (cloud-native vs legacy, containerization, microservices), regulatory environment, data residency requirements, financial stability, and vendor lock-in risks. The score ranges from 0-10, where higher scores indicate better readiness for technology migration.

Autopilot exhibits a medium-high migration readiness. Its cloud-native architecture, built on Amazon Web Services (AWS) with multi-region hosting, signifies a modern and flexible infrastructure that is inherently more adaptable to migration efforts. The strong regulatory compliance posture (ISO 27001, SOC2, HIPAA, GDPR, CCPA) indicates established processes and expertise in managing complex data and legal requirements, which is crucial for a smooth migration. The platform's use of 'No-code Integrations' also suggests a modular design that could simplify the re-integration of services during a migration. However, a significant challenge is the inherent vendor lock-in associated with being deeply integrated with a major cloud provider like AWS. While the 'Total Vendors: 0' suggests minimal direct contractual vendor lock-in, migrating away from AWS to a different cloud provider or on-premise solution would be a complex, costly, and time-consuming undertaking. The absence of data on financial stability means the company's capacity to fund a large-scale migration is unknown. Additionally, specific data residency requirements are not specified, which could introduce complexities depending on the target environment.

Compliance

5 in-scope frameworks identified; showing 3.

SOC 2 (source) — Compliant

As a cloud-based SaaS provider handling customer data, SOC2 compliance is essential. Company explicitly states SOC2 compliance and mentions audit reports are available on request, indicating active compliance program with regular audits.

Evidence: https://ortto.com/security-privacy/

ISO 27001 (source) — Compliant

Company explicitly states ISO 27001 compliance and references ISO 27701 (privacy extension) in their policies. As a data-intensive SaaS provider, information security management is critical and they demonstrate commitment to international standards.

Evidence: https://ortto.com/security-privacy/, https://ortto.com/gdpr/

GDPR (source) — Compliant

Company demonstrates strong GDPR compliance with comprehensive policies, appointed DPO (Chris Sharkey), detailed data subject rights procedures, and explicit GDPR compliance statements. As a US company processing EU personal data, GDPR applies and they have implemented appropriate safeguards including Standard Contractual Clauses for data transfers.

Evidence: https://ortto.com/gdpr/, https://ortto.com/security-privacy/, https://ortto.com/privacy/

Financials

Signed-in users can see whether their own company is exposed to this vendor's disruption, plus the full sub-vendor list and country breakdowns, every in-scope compliance framework plus gaps and next steps, and alerts when any of it changes.

View the full interactive report