Security

General practices

Security is a really important matter. Here at Standuply it is essential because our customers trust us with confidential information. We are constantly developing our security infrastructure and processes to ensure the safeguarding of our customer's sensitive data. For more information on security matters or security vulnerabilities, please contact our support.

Standuply staff practices

We implement ongoing, relevant, and up-to-date security training with all of our employees. Access to all data is limited only to those necessary. We conduct background checks before employment, and all of our staff members are required to read and sign our security and confidentiality policy agreement.

Confidentiality

All of our employees are restricted by regulations to maintain confidentiality concerning user data. Access to data is restricted, limiting availability to only those necessary. Data generated from the daily use of the service in the form of reports is encrypted and in order to be accessed, the employees responsible will only do so after requesting permission from the customer.

As a company, we treat matters concerning user data with the utmost importance.

PCI Compliance

As a payment provider we use Stripe - a PCI compliant payment gateway service and we’re ensured of security of your information. No credit card information is stored on our servers.

Data encryption in transit and at rest

All internal service communications and communications between our service and Slack are protected using TLS. Data at rest such as standup reports are protected using industry-standard AES-256 data encryption.

Data retention

All user data can be deleted upon request. A custom data retention policy can be also arranged where specific intervals are set when data will be wiped.

Incident management

Our company will inform you in the event of any security breach or unauthorized access to user data. We also have a public service status page that displays the service incidents history and uptime.

Report vulnerability

If you believe you have found a security vulnerability, please let us know right away. We will investigate all reports and do our best to quickly fix valid issues.

As a service customer you can also request our internal application vulnerability scan report.

You can send us an email at hello@standuply.com and our security team will respond as soon as possible.

Available public policies and additional security information

Standuply Privacy Policy

Standuply Information Security policy

Service Level Agreement

Cookies Policy

List of Standuply Subproccessors

Data Processing Agreement

Effective Date: Nov 06, 2020