Double the Donation security & compliance
An overview of Double the Donation's security posture — compliance, penetration testing, subprocessors, and data handling — verified on SOC2C (Listed).
SOC 2 statusSOC 2 Type II · Listed
FrameworksSOC 2 Type II
Penetration testNot listed
Subprocessors4 listed
HostingAzure
Trust centerView
Security questions about Double the Donation
- Is Double the Donation secure?
- Security isn't a single yes/no, but Double the Donation is SOC 2 Type II compliant. SOC2C verifies its compliance posture and shows how strongly each fact is proven.
- Does Double the Donation have a bug bounty or vulnerability disclosure program?
- Double the Donation hasn't listed a bug bounty or vulnerability disclosure program on SOC2C. Many companies accept security reports at security@doublethedonation.com or via a /security page (Double the Donation lists a security contact).
- Who are Double the Donation's subprocessors?
- Double the Donation lists 4 subprocessors on its trust center, including Microsoft Azure, GitHub, Vanta, SendGrid. Buyers use this for fourth-party risk review.
- Where does Double the Donation host or store data?
- Double the Donation hosts on Azure, and handles Employee personally identifiable information, Credit card information, Personal health information, Donation data relevant for matching gift communications. Data residency details are on its trust center.
- Where is Double the Donation's trust center or security page?
- Double the Donation's trust center is at https://security.doublethedonation.com. Its verified SOC 2 status, frameworks, and documents are summarized on its SOC2C profile.