Snapshot 68391
Normalized text
Scripts and page chrome removed; this is what change detection compares.
ShiftUp Trust Center At ShiftUp, security isn't just a feature—it's foundational to everything we build. Our security-first mindset drives our development processes, infrastructure decisions, and organizational policies. We treat the data entrusted to us—whether from our customers, their end users, or anyone who interacts with our organization—with the utmost care and responsibility. Security is embedded in our DNA, enabling us to deliver innovative solutions without compromising on protection. Compliance Links Privacy PolicyTerms of Service Resources ShiftUp - 2026 - SOC 2 Type II - Final Report Baseline Hardening Policy Business Continuity and Disaster Recovery Board of Directors Charter Data Classification Policy Controls Technology asset inventory Secure media disposal Multi-availability zone deployment Business continuity and disaster recovery plan Database backups Emergency operations continuity Capacity and performance monitoring Material system change communication Customer notification for major changes Cloud provider physical access review Baseline configuration management Centralized log collection and monitoring Encryption at rest Production key management Encryption in transit Annual strategic planning Board security briefings Governance committee bylaws Whistleblower mechanism Information security policies Data retention and deletion policy Data classification and access control Customer data deletion Anti-malware protection Removable media controls Employee confidentiality agreements Contractor background checks Employee background checks Disciplinary process Employee code of conduct acknowledgment Password policy Session timeout enforcement Access control procedures Least-privilege access for production infrastructure Production access management Incident response procedures Security concern resolution Security incident logging Security documentation availability Mobile device management Secure connection requirements Network firewall Firewall rule management Network architecture documentation Visitor management policy Security and privacy risk management Annual risk assessment Cybersecurity insurance Source code access controls Secure development procedures Source code change approval Static application security testing Environment and tenant segmentation Security awareness training Intrusion detection Customer support availability Vendor management program Penetration testing Contractor confidentiality agreements Contractual security commitments Vendor confidentiality and privacy agreements Vulnerability scanning and remediation Patch management Web application firewall Annual security policy acknowledgment Internal audit program Subprocessors Brave Search APIAI & ML Services AnthropicAI & ML Services Verda Google WorkspaceBusiness Apps & Productivity