SOC2C

Is this your company? Buyers are checking Regrow here. Claim regrow.ag free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Regrow logo

Regrow

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Regrow is SOC 2 Type II compliant. Regrow also holds ISO 27001, and GDPR.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

Regrow’s mission is to make agriculture resilient globally, and our values of commitment to our customers, clarity, and ownership drive how we think about and develop our platforms to be secure and implement data policies that protect our customers’ data. As an agriculture tech provider, Regrow recognizes the importance of the agricultural data used in our software, and our team is deeply committed to its safety.

Compliance & infrastructure

Hosting
GCP
Data handled
Customer personally identifiable informationEmployee personally identifiable informationCredit card informationPersonal health informationFarm management and farm history data

Documents

5

Subprocessors

7
  • G
    Google Cloud Platform · Cloud Service Provider
    1600 Ampitheatre Pkwy, Mountain View, CA 94043 USA
  • G
    Google Workspace · Identity Provider
    1600 Ampitheatre Pkwy, Mountain View, CA 94043 USA
  • H
    HubSpot · Marketing and Customer Support
    PO Box 419842 Boston, MA 02241-9842 USA
  • M
    Mixpanel · Data Analytics
    1 Front St, Suite 2800, San Francisco, CA 94111 USA
  • I
    Intercom · Customer Support
    18-21 St. Stephen’s Green Dublin 2, Ireland
  • G
    Google Drive · Document Management
    1600 Ampitheatre Pkwy, Mountain View, CA 94043 USA
  • J
    Jira · Project management, product support and collaboration
    Atlassian Pty Ltd, Level 6, 341 George St, Sydney NSW 2000, Australia

Compliance leadership

The person who leads Regrow's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Regrow's penetration test vendor isn't listed yet.

Claim this profile to add it.

This listing is partial

7/11 details · 64%

SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Regrow SOC 2 compliant?
Regrow is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Regrow ISO 27001 certified?
According to Regrow's public trust center, Regrow is ISO 27001 certified. On SOC2C this listing is Listed.
Is Regrow GDPR compliant?
According to Regrow's public trust center, Regrow is GDPR compliant. On SOC2C this listing is Listed.
Is Regrow SOC 2 Type I or Type II?
Regrow is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.
Can I use Regrow's SOC 2 for a vendor risk assessment?
Yes. Regrow's SOC 2 status, frameworks, auditor, and renewal timing are on SOC2C for vendor risk and security reviews. Request the underlying report through SOC2C to complete your third-party risk file.

Answers published by Regrow

Reproduced from Regrow's own trust center. These are the company's statements about its security practices — SOC2C has not tested or verified them, and they may have changed since we last read the page. Check the source ↗

What data does Regrow collect?
Regrow will only collect the data required for each program. As our customers’ programs may differ, the data collected may differ slightly. However, in general, we collect the following information for each MRV participant: - Farm management data (crop type, tillage type, fertilizer, cover crop type) - Farm management events (seeding dates, harvest dates, fertilizer application dates, tillage dates) - Field location/boundaries - Farmer name/email - Phone number For Sustainability Insights customers, we will collect the following: - End user name and email - Area of interest Please see our privacy policy for more information on the data that we collect.
Does Regrow sell or give customer data (including farmer data) to third-parties?
No, Regrow does not and will never sell customer data. Regrow will only provide customer data to third parties with express written consent from the customer and only as requested and initiated by the customer. We understand that as part of customers’ MRV programs, they may partner with verifiers, partners and others to create a successful program, and we will only provide customer data to those partners when we have received permission to do so.
Does Regrow use customer data (including farmer data) to create new products that it sells?
No, Regrow does not use customer data to create new products. We may use customer data to train, validate and calibrate the data models that we use to refine the quality of the outcomes where we have received permission to do so from the customer within the contract. When we do this, we only use non-identifiable data, and our preference is to also use aggregated data.
Who owns the data that is entered into Regrow’s platform?
Ownership of the data stays with the account user.
How is farm data protected?
Regrow considers farm data to be confidential and, sometimes, sensitive data. This means that we use industry standard best practices to encrypt the data.

Business & Industrial peers that completed SOC 2