legale. Trust Center
🇺🇸

Security and compliance, backed by evidence.

Explore our practices, review documents, and learn how we protect your information.

Transparency about our security

Compliance

Documentation to assess our security management.

View all →
ISO 27001 Certificate Information security Download
Readiness: 98%
Readiness does not equal certification.

Security

How we protect systems and information.

Policies

The rules that guide our operations.

View all policies →

Restricted documents require authorization.

Control Monitoring

An organized view of our security measures. A control is green when it is operational. A control that is not yet operational is yellow.

Verified Needs review Failed

App Security

Authentication Policy Inclusions
Code Review Process
Employee Disclosure Process
Production Code Changes Restricted
Responsible Disclosure (Bug Bounty)
SLA for Security Bugs
Software Development Lifecycle
Terminated Employee Access Revoked Within One Business Day

Data Security

Allowable Use and Disclosure
Backup Policy
Credential Keys Managed
Customer Data Deletion Upon Termination
Customer Data Policies
Daily Database Backups
Data Classification
Data Retention Policy

Infrastructure Security

Cloud Data Storage Restricted
Cloud Infrastructure Linked
Encryption of Web-Based Admin Access
Operational Audit
Password Policy
Security Patches Automatically Applied

Network Security

Malware Detection Software
Oversight of Security Controls
Unique Accounts Used

Organization Security

Acceptable Use Policy
Background Checks
Code of Conduct
Contractor Requirements
Cryptography Policies
Data Protection Policy
Disaster Recovery Plan
Follow-Ups Tracked

Product Security

Annual Performance Evaluations
Clean Desk Policy in Place
Commitments Explained to Customers
Databases Monitored & Alarmed
Hard-Disk Encryption
Job Descriptions
MFA on Accounts
NoSQL Database Monitored & Alarmed

Data Security

Cloud storage buckets versioned
Storage secure transfer (HTTPS) required
Storage public blob access disabled

Application Security

Formal code review required before merge
Los cambios de código en producción están restringidos

Infrastructure and Access

Protected default branch and authorized merge access
Repository write access mapped to Personnel
SSL/TLS en endpoints de administración e inicio de sesión

Other controls

Security issues are prioritized
Se está utilizando un sistema de control de versiones
Explore controls →

Subprocessors

Providers that support our service operations.

Android Store Active
Chipax Active
GitHub Active
Ingram Micro Active
Intruder.io Active
MailJet Active
Microsoft Azure Active
Twilio Active
Zoho CRM Active

Privacy

Learn how we process and protect personal data.

View privacy policy ↗