SOC2C

Is this your company? Buyers are checking ActivTrak here. Claim activtrak.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
ActivTrak logo

ActivTrak

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

ActivTrak is SOC 2 Type II compliant. ActivTrak also holds GDPR, CCPA, and HIPAA.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

ActivTrak provides privacy-first, data-driven insights with uncompromising security to measure and assess productivity and wellness with the employee in mind. Designed to focus on the collection of contextual data and avoid intrusive employee monitoring techniques, ActivTrak helps organizations better understand how to improve overall productivity and business outcomes and meet compliance requirements through the secure and ethical use of data intelligence built for a modern workplace.

Compliance & infrastructure

Hosting
AWSGCP
Data handled
Customer personally identifiable informationEmployee personally identifiable informationCredit card informationPersonal health information

Documents

5

Subprocessors

2
  • G
    Google Cloud Platform · gcp
    US, EU, UK, AU, CA
  • A
    Amazon Web Services · aws
    US

Compliance leadership

The person who leads ActivTrak's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. ActivTrak's penetration test vendor isn't listed yet.

Claim this profile to add it.

This listing is partial

7/11 details · 64%

SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is ActivTrak SOC 2 compliant?
ActivTrak is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is ActivTrak GDPR compliant?
According to ActivTrak's public trust center, ActivTrak is GDPR compliant. On SOC2C this listing is Listed.
Is ActivTrak CCPA compliant?
According to ActivTrak's public trust center, ActivTrak is CCPA compliant. On SOC2C this listing is Listed.
Is ActivTrak HIPAA compliant?
According to ActivTrak's public trust center, ActivTrak is HIPAA compliant. On SOC2C this listing is Listed.
Is ActivTrak SOC 2 Type I or Type II?
ActivTrak is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.

Answers published by ActivTrak

Reproduced from ActivTrak's own trust center. These are the company's statements about its security practices — SOC2C has not tested or verified them, and they may have changed since we last read the page. Check the source ↗

Where is data hosted?
Data is hosted in the Google Cloud Platform. Currently, data is stored in the US by default. Upon request, data for Advanced and Premium customers can be stored in one of our other locations. See ActivTrak Cloud Data Center Locations for more details.
How is data encrypted?
Data is encrypted via TLS 1.2 with AES-128 bit while in transit from the client-side agent to the ActivTrak cloud. Once at rest in the cloud, the data is encrypted using AES-256 bit.
Is the data backed up?
ActivTrak customer data is backed up within Google Cloud using Google Cloud best practices.
Does the solution log keystrokes, or scrape screens?
No, ActivTrak does not keystroke log or screen scrape, and has no intention of ever doing so. We believe in insights, not oversights.
Do you scan for malware, vulnerabilities, and SQL injections?
Yes. Supporting information can be found in the ActivTrak Policy Packet under Operations Security Policy.

Business & Industrial peers that completed SOC 2