Third Party Index

Snapshot 27326

Document
Trust center
URL
https://trust.opengov.com/
Fetched
HTTP status
200
Content type
text/html; charset=utf-8
Fetch mode
static
Size
467314 bytes
SHA-256 (raw)
faba8f3a1d6a902f0c67c634b72a9cf635397754d77907d7fd6c32e6e20eb805
SHA-256 (normalized text)
54443014491430a210d62a8f528dfd6227c02760a0fc56dc58973e82c286a11a

Normalized text

Scripts and page chrome removed; this is what change detection compares.

OpenGov Trust Center
Start your security review
View & download sensitive information
Ask for information
Overview
At OpenGov, we treat the security and reliability of our cloud platform and that of the data it hosts with utmost importance. Building that level of trust with our customers is a key priority for us. Learn about our extensive security and reliability practices and comprehensive compliance controls on this page. Contact us at [email protected] for additional information, reporting vulnerabilities, or any other concerns related to assurance of OpenGov’s cloud platform.
Compliance
SOC 2 Type 2
SOC 3
AZ RAMP
TX-RAMP
GovRAMP
AWS Partner
CCPA
CPRA
GDPR
VPAT
Selected by public servants modernizing government
Brattleboro
City of Austin
City of San Antonio
Kansas City
City of Hilliard
City of Gahanna
RI
City of Cambridge
City of Los Angeles
City of Orlando
OCFL
City of Phoenix
Documents
REPORTSPentest Report
REPORTSSOC 2 Report
REPORTSSOC 3 Report
COMPLIANCETX-RAMP
APP SECURITYApplication Penetration Testing
LEGALCustomer Contracts
LEGALData Processing Agreement
LEGALService-Level Agreement
LEGALSubprocessors
AIAI Overview
Infrastructure
Status Monitoring
Anti-DDoS
BC/DR
View more
Risk Profile
Data Access Level
Impact Level
Recovery Time Objective
View more
Product Security
Audit Logging
Data Security
Integrations
View more
Reports
Pentest Report
SOC 2 Report
SOC 3 Report
Self-Assessments
We are working on our security compliance. We can provide completed questionnaires upon request.
Data Security
Access Monitoring
Data Backups
Encryption-at-rest
App Security
Application Penetration Testing
Bot Detection
AI
AI Overview
AI Feature
ESG
Anti-Bribery and Corruption
Legal
Subprocessors
Cyber Insurance
Data Processing Agreement
View more
Data Privacy
Cookies
Access Control
Access Log Management
Password Manager
Endpoint Security
Anti-Malware
Disk Encryption
Endpoint Detection & Response
View more
Network Security
Bot Detection
Security Information and Event Management
Web Application Firewall
Corporate Security
Email Protection
Policies
Our policies are currently under review and revision. Please contact us if you would like additional information in the meantime.
Security Grades
Qualys SSL Labs
opengov.com
A+
Black Kite
OpenGov
B+
SecurityScorecard
OpenGov Inc.
View more
Incident Response
Designated Response Personnel
Incident Reporting Process
Security Operations Center (SOC)
Risk Management
We have a dedicated team that manages security risks. We are happy to provide more details about our risk management practices upon request.
Asset Management
We have strict asset management policies in place to ensure that all assets are accounted for and secure.
BC/DR
Alternate Processing/Storage Site
Business Continuity Plan (BCP)
Disaster Recovery Plan (DRP)
Training
Employee Privacy Training
Phishing Training
Security Awareness Training
View more
Change Management
We have a change and configuration management process in place to ensure that changes are properly reviewed and approved.
Physical & Environment
Physical Access Security
Continuous Monitoring
Automated Compliance Monitoring
Intrusion Prevention System (IPS)
Security Information & Event Management (SIEM)
Subprocessors
OpenGov Trust Center Updates
Security advisory: Phishing emails impersonating OpenGov
General
OpenGov is aware that malicious third parties may occasionally impersonate legitimate emails in an attempt to compromise recipients. We have received reports of phishing emails that falsely claim to come from OpenGov or from an "OpenGov Procurement Portal," typically asking the recipient to download a file or follow a link to a third-party website.
This activity originates from outside parties. There is no evidence that OpenGov systems or customer data have been compromised. These messages are not sent by OpenGov and do not come from OpenGov systems.
How to stay safe:
OpenGov does not send emails that redirect you to third-party file-sharing or websites to retrieve OpenGov documents.
Do not click links or download files from untrusted or unexpected sources.
Be cautious of file-share notifications (for example, "you've been sent a file") that reference OpenGov or a procurement portal but come from an unfamiliar sender or domain.
When in doubt, confirm directly with your trusted OpenGov contact before taking action.
Report suspected OpenGov-related phishing to [email protected].
Also report the message to your own organization's IT/security team using your normal process.
We are working with affected customers and will update this notice if our assessment changes.
If you need help using this OpenGov Trust Center, please contact us.
Contact support
If you think you may have discovered a vulnerability, please send us a note.
Report issue