SOC2C

Is this your company? Buyers are checking HeroCoders here. Claim herocoders.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
HeroCoders logo

HeroCoders

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

HeroCoders is SOC 2 Type II compliant. HeroCoders also holds GDPR.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

HeroCoders’ workflow management and team collaboration software helps you work simpler, faster and safer. More than 70,000 companies use our Cloud-based apps across the Atlassian, Microsoft Teams and monday.com platforms. Checklists for Jira – available in Free, Pro, and Enterprise versions on the Atlassian Marketplace – helps teams handle agile processes including Acceptance Criteria and Definition of Done. Clockwork for Jira, available in Free (no longer offered), Lite, and Pro versions, is a time tracking and timesheet solution for busy teams that need maximum flexibility and accuracy when

Compliance & infrastructure

Hosting
AWS

Documents

25

Subprocessors

10
  • A
    Amazon Web Services EMEA SARL · Infrastructure services
    Location: Europe
  • A
    Atlassian Pty Ltd. · Infrastructure services
    Location: United States / Europe
  • D
    Datadog, Inc. · Infrastructure monitoring
    Location: United States
  • F
    Functional Software, Inc. (Sentry) · Software development services
    Location: United States
  • H
    Heroku, Inc. · Infrastructure services
    Location: United States / Europe
  • I
    Intercom R&D UC · Customer support
    Location: United States
  • M
    MongoDB, Inc. · Infrastructure services
    Location: United States / Europe
  • N
    New Relic, Inc. · Infrastructure monitoring
    Location: United States
  • S
    SolarWinds Worldwide, LLC (Papertrail) · Application log management and archive
    Location: United States
  • T
    Twilio Ireland Ltd. · Sending emails
    Location: Europe

Compliance leadership

The person who leads HeroCoders's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. HeroCoders's penetration test vendor isn't listed yet.

Claim this profile to add it.

Recent updates

Updates to our Subprocessors ListJun 2026

We would like to inform you that we will be updating our Subprocessors List to include Atlassian Pty Ltd. as a subprocessor for Checklists for Jira Enterprise app. This change is part of our ongoing migration of applications to the Atlassian Forge platform - you can learn more in Atlassian’s documentation: _About Forge_. As with Checklists for Jira Pro, Clockwork Lite for Jira, and Clockwork Pro for Jira, Atlassian Pty Ltd. will now provide infrastructure services also for Checklists for Jira Enterprise. This means Atlassian may have access to End User data in transit through the Forge proxy. The HeroCoders Team

Key policies now available in our Trust CenterMay 2026

To better support our Customers' third-party risk assessment and vendor review processes, we have expanded the information available through our Trust Center. In addition to our existing security and compliance documentation, we now provide access to key company policies that are frequently requested during security reviews and procurement processes. Our goal is to make it easier for Customers to assess HeroCoders' security, privacy, and compliance practices while reducing the need for individual documentation requests. We encourage you to visit our Trust Center to review the available resources. The HeroCoders Team

Updates to our Subprocessors ListMay 2026

We would like to inform you that we are updating our Subprocessors List by adding Atlassian Pty Ltd. as a new subprocessor as part of our migration of selected apps to the Atlassian Forge platform. You can learn more in Atlassian’s documentation: _About Forge_. Atlassian Pty Ltd. will provide infrastructure services for Checklists for Jira Pro, Clockwork Lite for Jira, and Clockwork Pro for Jira. This means Atlassian may have access to End User data in transit through the Forge proxy. In addition, Portfolio for Jira will use Atlassian-hosted storage through the Forge platform. As a result, End User data for Portfolio for Jira will be stored by Atlassian. The HeroCoders Team

We have updated our Privacy Policy.May 2026

We’re pleased to announce that we have updated our Privacy Policy. The new version reflects improvements in structure and clarity, making the document easier to navigate and more comprehensive. The update also aligns the Policy better with our current practices and applicable regulations. This update is provided for your information only - no action is required on your part. You can review the latest version here: Privacy Policy Cheers, The HeroCoders Team

New penetration test reports available now on our Trust CenterApr 2026

We’re pleased to announce that the 2026 penetration extended test reports for Checklists for Jira Cloud Apps and Clockwork for Jira are now available in the “Resources” section of our Trust Center as well as the 2026 penetration test report for Portfolio for Jira. As always, please let us know if you have any questions. The HeroCoders Team

This listing is partial

7/11 details · 64%

SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is HeroCoders SOC 2 compliant?
HeroCoders is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is HeroCoders GDPR compliant?
According to HeroCoders's public trust center, HeroCoders is GDPR compliant. On SOC2C this listing is Listed.
Is HeroCoders SOC 2 Type I or Type II?
HeroCoders is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.
Can I use HeroCoders's SOC 2 for a vendor risk assessment?
Yes. HeroCoders's SOC 2 status, frameworks, auditor, and renewal timing are on SOC2C for vendor risk and security reviews. Request the underlying report through SOC2C to complete your third-party risk file.
Is HeroCoders penetration tested?
HeroCoders hasn't listed its penetration testing on SOC2C yet. SOC 2 Type II programs typically include periodic third-party penetration tests; the company can add who performed theirs.

Business & Industrial peers that completed SOC 2