Privacy & security

SOC 2 and GDPR compliance

Timeglass security assurance, data protection commitments, and compliance documents.

Timeglass is SOC 2 Type II compliant and GDPR compliant, with independently assessed security controls and documented privacy commitments.

SOC 2 Type II

Timeglass has completed a SOC 2 Type II examination. A Type II examination assesses whether documented controls operated effectively over a period of time, rather than reviewing their design at only one point in time.

GDPR

Timeglass is GDPR compliant and provides the controls and contractual information customers need when Timeglass processes personal data on their behalf.

  • Data processing terms are published in the Data Processing Addendum.
  • Current service providers are listed on the Sub-processors page.
  • Retention and deletion controls help customers apply their data-handling policies.
  • Capture exclusions and automatic redaction reduce unnecessary collection of sensitive data.

More security information

Read the security overview for information about encryption, access controls, infrastructure, and monitoring. The Privacy Policy explains how Timeglass handles personal data.

Common questions

Is Timeglass SOC 2 compliant?

Yes. Timeglass has completed a SOC 2 Type II examination.

Is Timeglass GDPR compliant?

Yes. Timeglass is GDPR compliant and publishes its Data Processing Addendum and sub-processor list.