SOC2C

Float Schedule security & compliance

An overview of Float Schedule's security posture — compliance, penetration testing, subprocessors, and data handling — verified on SOC2C (Listed).

SOC 2 statusSOC 2 Type I · Listed
FrameworksSOC 2 Type I, GDPR
Penetration testNot listed
Subprocessors17 listed
HostingGCP
Trust centerView

Security questions about Float Schedule

Is Float Schedule secure?
Security isn't a single yes/no, but Float Schedule is SOC 2 Type I compliant and holds SOC 2 Type I, GDPR. SOC2C verifies its compliance posture and shows how strongly each fact is proven.
Does Float Schedule have a bug bounty or vulnerability disclosure program?
Float Schedule hasn't listed a bug bounty or vulnerability disclosure program on SOC2C. Many companies accept security reports at security@float.com or via a /security page (Float Schedule lists a security contact).
Who are Float Schedule's subprocessors?
Float Schedule lists 17 subprocessors on its trust center, including Google Cloud Platform, Datadog, Intercom, Mailer Lite, CloudAQMP. Buyers use this for fourth-party risk review.
Where does Float Schedule host or store data?
Float Schedule hosts on GCP, and handles Credit card information, Personal health information, Names and Email Addresses. Data residency details are on its trust center.
Where is Float Schedule's trust center or security page?
Float Schedule's trust center is at https://trust.float.com. Its verified SOC 2 status, frameworks, and documents are summarized on its SOC2C profile.

See Float Schedule's full SOC 2 profile →