SOC2C

Grata Inc security & compliance

An overview of Grata Inc's security posture — compliance, penetration testing, subprocessors, and data handling — verified on SOC2C (Listed).

SOC 2 statusSOC 2 Type II · Listed
FrameworksGDPR, SOC 2 Type II
Penetration testNot listed
Subprocessors5 listed
HostingAWS
Trust centerView

Security questions about Grata Inc

Is Grata Inc secure?
Security isn't a single yes/no, but Grata Inc is SOC 2 Type II compliant and holds GDPR, SOC 2 Type II. SOC2C verifies its compliance posture and shows how strongly each fact is proven.
Does Grata Inc have a bug bounty or vulnerability disclosure program?
Grata Inc hasn't listed a bug bounty or vulnerability disclosure program on SOC2C. Many companies accept security reports at security@grata.com or via a /security page (Grata Inc lists a security contact).
Who are Grata Inc's subprocessors?
Grata Inc lists 5 subprocessors on its trust center, including Amazon Web Services, MongoDB Atlas, Twilio, Inc, Auth0, Datasite Costa Rica SRL. Buyers use this for fourth-party risk review.
Where does Grata Inc host or store data?
Grata Inc hosts on AWS. Data residency details are on its trust center.
Where is Grata Inc's trust center or security page?
Grata Inc's trust center is at https://trust.grata.com. Its verified SOC 2 status, frameworks, and documents are summarized on its SOC2C profile.

See Grata Inc's full SOC 2 profile →