As users of our own product, we understand how important the security and privacy of your data is.
As well as all data being encrypted and backed up fully every 24 hours, we also track all the latest security community outputs, promptly upgrade our services to fix new vulnerabilities and constantly make sure we are using the latest technology available. 🔒
Keep reading for more detailed information on our policies and practices.
Encrypted traffic
All transmissions to and from monday.com, including sign-on, are encrypted at 256-bit and sent through TLS 1.2, adhering to the FIPS 140-2 certification standard.
External security audits and penetration tests
We work closely with industry leaders in web app and infrastructure security who perform penetration tests and audits of monday.com. We monitor our product for security vulnerabilities automatically as the product grows.
Where are my files hosted?
All of your data and files are hosted in a secure physical location. Our servers are stored in multiple data centers of Amazon Web Services across the US. They've devoted an entire portion of their site to explaining their security measures, which you can find here.
Unfortunately, you cannot back up files and data on your own servers as monday.com is hosted on a cloud server.
Experienced team members
Our engineering and operation teams keep their skills up to date regarding security best practices. We have coded many different online systems and are experienced in infrastructure security and systems security.
Availability
We're committed to making monday.com a highly available service that you can always count on.
We take measures and build the product to tolerate a failure of individual components and we make sure to keep the service up while doing maintenance work on our infrastructure.
Data protection
We consistently backup the data of our customers. Critical data is backed up every 5 minutes (this includes all customer data), and non-critical data on a daily basis.
Attachments in your account are encrypted and delivered on a per-user-access controlled basis.
We know the data you share in monday.com is private and confidential. We have strict controls over our employees' access to internal data and we are committed to ensuring that your data is never seen by anyone who should not see it.
With that said, the operation of monday.com wouldn't be possible without a few members having access to our databases in order to optimize performance and storage. This team is prohibited from using these permissions to view customer data without explicit, written permission from the user.
If you are interested in even more security, check out our Enterprise plan. Plans includes an audit log, and more advanced security features.
Automated backups powered by Rewind
At monday, your data's security is our number one priority. If you are interested in a second layer peace of mind, you can use the Rewind monday app. Rewind is dedicated backup solution that automatically saves your boards, updates, and more. That way, you’re always in control in the rare case that you ever need to restore something.
The Rewind backup includes:
- Comprehensive automated backups - protect your workspaces, boards, items, and more with daily backups, on-demand backups, unlimited storage
- Enterprise-grade security and compliance - for full details, please see the security and compliance section here
- Granular and full restore capabilities - restore individual items or your entire monday account
- Seamless integration with monday - set up Rewind in minutes with the Rewind monday app
If you have any questions, please reach out to our team right here. We’re available 24/7 and happy to help.