An overview of our hosting location, encryption practices, access controls, backup policies, and compliance with security standards.
Data Storage & Security at Contractbook:
- Hosting: All data is stored in the EU using Google Cloud Platform (GCP), which is known for its high security standards.
- Encryption: All data is encrypted in transit (TLS 1.2/1.3) and at rest (AES-256).
- Separation: We use a multi-tenant architecture with logical separation of each customer’s data.
- Access control: Internal systems are protected with strict role-based access, SSO, and MFA.
- Backups: Encrypted backups are maintained and regularly tested.
- Security standards: We follow strict internal policies and regularly conduct external penetration testing.
Learn more:
- Google Cloud security: https://cloud.google.com/security
- Our Privacy Policy: https://contractbook.com/legal/privacy
- Trustcenter and SOC2 report: https://app.safebase.io/portal/c6dab74c-4178-4e8d-b724-1420bcd07361/preview?product=default