You rely on Flipsnack to create and publish private documents and business catalogs that are important to you. We’re committed to honor that trust, always. We protect and secure every piece of information and data that you share with us. Whether it’s documenting our policies, writing code, encrypting information, staying up to date with all new rules and regulations, security is important to each one of us, here at Flipsnack.
ISO 20000 - 1
We maintain a high level of availability on our platform, averaging over 99.9%. You can check out the status of our website and systems on our public status page.
We respect every persona’s rights to privacy and data security. We process and store data in compliance with GDPR regulations.
Flipsnack credentials are stored encrypted using the bcrypt algorithm.
Flipsnack services and data are hosted in Amazon Web Services (AWS) facilities (us-east-1 region) in the USA.
Flipsnack was built with disaster recovery in mind. All of our infrastructure and data are spread across 3 AWS availability zones and will continue to work should any one of those data centers fail.
All of our servers are within our own virtual private cloud (VPC) with network access control lists (ACLs) that prevent unauthorized requests getting to our internal network.
Access to customer data is limited to authorized employees who absolutely need it for their job.
Flipsnack runs a zero-trust corporate network which means that every employee has to authenticate to gain access to any of Flipsnack resources.
We have 2-factor authentication enforced (2FA) and strong password policies on Google, AWS and other tools required for our day to day tasks, to ensure access to cloud services is protected.
All data sent to or from Flipsnack is encrypted in transit using 256 bit encryption. Our application endpoints are TLS/SSL only and score an “A+” rating on Qualys SSL Labs‘ tests. This means we only use strong cipher suites and have features such as HSTS and Perfect Forward Secrecy fully enabled.
Flipsnack uses an internal protocol for handling security events which includes escalation procedures, rapid mitigation and post mortem. All employees are informed of our policies.
We enable team administrators to assign specific roles to their teammates, and each role has different permission levels. Based on the selected role, a teammate may or may not have access to various app settings, billing, user management or have the ability to publish content without approval.Read more
Here at Flipsnack we’re focused on creativity and innovation, but we also work together to meet the highest security standards. We aim to create the most secure climate for us and especially for our customers.
Daniel Ciobanu - Head of Integrated Management System