Snapshot 57194
Normalized text
Scripts and page chrome removed; this is what change detection compares.
Skip to navigationSkip to main content Bloomfire Bloomfire is the AI-powered Enterprise Intelligence platform that seamlessly links people, data, process, and technology to eliminate information silos. With AI search, dynamic knowledge curation, and intuitive collaboration, we empower teams to move faster and make smarter decisions. Since 2011, we have partnered with leading companies to ensure knowledge flows dynamically where it’s needed most. security@bloomfire.com Privacy PolicyOpens in new tab Bloomfire is committed to the confidentiality and security of our customers. We work with companies in highly regulated industries like finance and healthcare to centralize access to mission-critical knowledge and protect their most valuable assets. We regularly audit our policies for compliance, so you can rest assured knowing your data is secure with Bloomfire. We are SOC 2 compliant and keep your data secure in our cloud-based platform. We are HIPAA-Ready and recognize the importance of safely storing patient information. We are GDPR-ready and take the necessary steps to protect data for customers in the EU. We use end-to-end encryption for data at rest, with all user data stored using AES-256. We store platform data on servers located in SSAE-compliant facilities with encrypted backups and multiple storage locations. Compliance System and Organization Controls (SOC) 2 Type II NIST AI Risk Management Framework Resources View all Policies Bloomfire Privacy Policy Opens in new tab Access Control Policy (EN) Asset Management Policy (EN) Business Continuity and Disaster Recovery Plan (EN) View 14 more SOC 2 SOC 2 Type II Other resources Bloomfire Subprocessors Opens in new tab Bloomfire SOC 2 Type II Report 02.08.2026.pdf Controls View all Infrastructure security Unique production database authentication enforced Encryption key access restricted Unique account authentication enforced View 18 more Infrastructure security controls Organizational security Production inventory maintained Portable media encrypted Anti-malware technology utilized View 11 more Organizational security controls Product security Data encryption utilized Control self-assessments conducted Penetration testing performed View 2 more Product security controls Internal security procedures Continuity and Disaster Recovery plans established Continuity and Disaster Recovery plans tested Configuration management system established View 34 more Internal security procedures controls Data and privacy Data retention procedures established Customer data deleted upon leaving Data classification policy established Data collected Bloomfire Privacy Policy https://bloomfire.com/privacy-policy/ Bloomfire Terms of Use https://bloomfire.com/terms-of-use/ Subprocessors View all Amazon Web Services • Cloud provider EEA (Sweden, Ireland and Germany), UK, Canada, Australia, Brazil, Singapore, South Korea, USA, India, Japan All of Bloomfire’s infrastructure/hosting is contained within AWS. This includes all permanent storage of data which is encrypted at rest and in transit. CloudConvert • Document management USA, Germany Bloomfire sends raw documents for processing upon initial upload. CloudConvert does not have permanent access to Bloomfire data, nor does it operate within Bloomfire’s AWS network. Mailgun • Email Management USA, EEA Bloomfire receives emails through Mailgun to create content from an email. Twilio Sendgrid • Email Management USA Bloomfire sends all outbound emails through SendGrid’s SMTP service. SendGrid does not have permanent access to Bloomfire data, nor does it operate within Bloomfire’s AWS network. Updates View all Compliance System and Organization Controls (SOC) 2 Type II Report on Management’s Description of its Bloomfire Published March 17, 2026 Annual SOC 2 Type II Report Compliance SOC 2 Certification Published March 25, 2025 SOC 2 Certification