Third Party Index

Snapshot 34839

Document
Trust center
URL
https://security.kombo.dev/
Fetched
HTTP status
200
Content type
text/html; charset=utf-8
Fetch mode
static
Size
286083 bytes
SHA-256 (raw)
f742421d27e396ea8edbf7f7be58175956e1aa9609597ee200e6ff1144f2324c
SHA-256 (normalized text)
a44f6c99c1db8c43f255933a17e7db3fb8a76aeb20c505664024cb61d93c6202

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Trust Center
Start your security review
View & download sensitive information
Ask for information
Overview
Introduction from our CTO
If you are reading this page, then you are serious about security. So am I.
I recognise that Kombo has both a legal and moral responsibility to ensure that we comply with data protection legislation and industry standards. Our company value is “do the right thing for the customer” and that means not just ticking boxes to ensure your data is safe, but questioning everything we do with the intent of making it safer.
It’s not just the right thing to do; it’s good business sense. We survive by ensuring your data is safe. We thrive by constantly looking for ways to make it even safer.
It’s my intent that all common security questions should be answered here. If you have any further questions, please don't hesitate to get in touch with me personally at [email protected].
Many thanks,
Arne Gebert
Chief Technology Officer, Kombo
Compliance
GDPR
HIPAA
ISO/IEC 27001
SOC 2
SOC 2 Type 2
Documents
DOCUMENTSData Flow Chart
REPORTSPentest Report
COMPLIANCEISO/IEC 27001
COMPLIANCESOC 2
COMPLIANCESOC 2 Type 2
LEGALCyber Insurance
POLICIESAcceptable Use Policy
POLICIESAccess Control Policy
POLICIESAsset Management Policy
POLICIESBackup Policy
POLICIESBusiness Continuity/Disaster Recovery (BC/DR) Policy
POLICIESData Classification Policy
Risk Profile
Data Access LevelRestricted
Impact LevelSubstantial
Recovery Time Objective24-48 hours
View more
Reports
Pentest Report
Data Security
Data Backups
Data Erasure
Encryption-at-rest
View more
App Security
Responsible Disclosure
Credential Management
Vulnerability & Patch Management
Legal
Subprocessors
Data Processing Agreement
Master Services Agreement
View more
Access Control
Data Access
Logging
Password Security
Infrastructure
Status Monitoring
Google Cloud Platform
Separate Production Environment
Corporate Security
Asset Management Practices
Employee Training
HR Security
View more
Policies
Acceptable Use Policy
Access Control Policy
Asset Management Policy
View more
If you think you may have discovered a vulnerability, please send us a note.
Report issue