We take security seriously. Employee Envoy uses industry-leading encryption, access controls, and compliance standards to protect your employee data.
Multiple layers of security protect your data at every level
All data is encrypted at rest and in transit using AES-256 encryption. Credentials are encrypted with industry-standard algorithms.
Multi-factor authentication and secure password hashing protect user accounts from unauthorized access.
Granular permissions ensure users only access data and features they need for their role.
Every action is logged with timestamps, user identification, and context for compliance and security.
Built on Cloudflare's global network with enterprise-grade security and reliability.
We never sell your data. Your employee information is used solely to provide the service.
We meet or exceed industry standards for data protection and privacy
Full compliance with the General Data Protection Regulation (GDPR) for European users.
Compliant with California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA).
We are building our security controls with SOC 2 Trust Service Criteria in mind. Our current infrastructure includes many controls required for SOC 2 compliance:
We plan to pursue formal SOC 2 certification as we scale. Enterprise customers requiring SOC 2 attestation can contact us to discuss our security controls and roadmap.
API endpoints are protected with rate limiting to prevent abuse and brute force attacks.
CSP headers protect against XSS attacks and unauthorized script execution.
We regularly update dependencies and patch security vulnerabilities.
Daily automated backups ensure data recovery in case of incidents.
24/7 monitoring and alerting for security incidents and system health.
Integration credentials are encrypted and stored securely, never exposed in logs or UI.
We take security vulnerabilities seriously. If you discover a security issue, please report it responsibly.
Email: security@employeeenvoy.com
Please include details about the vulnerability, steps to reproduce, and potential impact. We will respond within 48 hours and work with you to resolve the issue responsibly.
Start your free 14-day trial with enterprise-grade security
Start Free Trial