Third Party Index

Snapshot 24307

Document
Security page
URL
https://maze.co/security/
Fetched
HTTP status
200
Content type
text/html; charset=UTF-8
Fetch mode
static
Size
294290 bytes
SHA-256 (raw)
018c1a8c63562d4f8738505d9040bad18fd8edfa1c55bbb6cc6076af9aa75bc2
SHA-256 (normalized text)
a6c9e0c05db4d10427e3592621fa95e22331f60effad08fe0640534bac8f9aa6

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Keeping your data safe is important to us.
Datacenter security
All our platform infrastructure is hosted on Amazon Web services (“AWS”) facilities, within virtual private clouds “VPC” we configure and manage to safeguard against unauthorized network requests.
AWS is deeply committed to securing the underlying infrastructure we build on, and continuously expands their Compliance programs. For more details, please visit https://aws.amazon.com/security/ & https://aws.amazon.com/compliance/programs/
Encrypted transmission
All user data is transported securely, encrypted in transit and encrypted at rest. Encrypting your data provides an additional layer of protection towards events such as unauthorised modification and man-in-the-middle attacks, etc. We use 256-bit SSL/TLS.1.2 encryption, and industry-standard AES-256 algorithms respectively.
Platform Architecture Design
Our platform is designed to follow microservices architecture design principles, meaning our services and their underlying backend components are decoupled from each other. This enables us to automatically scale infrastructure based on demand, with minimal impact to business operation.
Infrastructure resources are created directly from code instruction, commonly referred to as "Infrastructure as Code" (IaC). Backend infrastructure is frequently replaced, as part of our continuous deployment pipeline to ensure consistent and version controlled environments.
Platform Reliability
Our platform is designed to be highly available and fault tolerant. We monitor continuously and automatically trigger prioritised alerts directly to the responsible teams who react accordingly.
Sometimes unexpected hiccups do happen from time to time. When our monitoring detects issue that may impact your experience with our service, we'll be sure to take ownership and keep you updated in real-time via our status page - https://status.maze.design/
Your privacy rights are important
Maze is dedicated to ensuring that all customer and employee personal data is treated in accordance with the General Data Protection Regulation ("GDPR").
SOC2 Type II Certified
We hold ourselves to our own high standards, as well as those established by the industry. We are SOC 2 Type II certified (Security). For more information about our SOC2 report, please see here.
Credit Cards
Maze does not directly store any credit card or payment information. We have partnered with Stripe to securely handle the sensitivity of payment processing data. Please see https://stripe.com/docs/security/ stripe for more information about their security commitment and PCI compliance.
Questions
If you have any security questions or if you believe you have found a security vulnerability please don't hesitate to contact our Security Team at [email protected].