Privacy & security
SOC 2 and GDPR compliance
Timeglass security assurance, data protection commitments, and compliance documents.
Timeglass is SOC 2 Type II compliant and GDPR compliant, with independently assessed security controls and documented privacy commitments.
SOC 2 Type II
Timeglass has completed a SOC 2 Type II examination. A Type II examination assesses whether documented controls operated effectively over a period of time, rather than reviewing their design at only one point in time.
GDPR
Timeglass is GDPR compliant and provides the controls and contractual information customers need when Timeglass processes personal data on their behalf.
- Data processing terms are published in the Data Processing Addendum.
- Current service providers are listed on the Sub-processors page.
- Retention and deletion controls help customers apply their data-handling policies.
- Capture exclusions and automatic redaction reduce unnecessary collection of sensitive data.
More security information
Read the security overview for information about encryption, access controls, infrastructure, and monitoring. The Privacy Policy explains how Timeglass handles personal data.