Is this your company? Buyers are checking Subsplash here. Claim subsplash.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.
Claim free
Subsplash
Sourced from public information. Not yet verified by the company.
Subsplash is SOC 2 compliant. Subsplash also holds PCI DSS, GDPR, and CCPA.
About
Trusted by over 20,000 churches around the the world, the Subsplash Platform is built with the highest level of security to keep you and your community safe.
Compliance & infrastructure
Subprocessors
13- AAmazon Web Services · Hosting, storage and processing Customer DataUSA
- SSalesforce · Support and account managementUSA
- SSnowflake · Data warehouse servicesUSA
- IIntercom · Support and account managementUSA
- SStripe · Payment processingUSA
- OOutreach · Customer Communication ToolUSA
- HHubspot · CRM IntegrationUSA
- TTableau · Data Visualization PlatformUSA
- LLoom · Support RecordingsUSA
- MMongoDB · Database HostingUSA
- PPendo · Data analyticsUSA
- SSentry (Functional Software, Inc. d/b/a Sentry) · Application MonitoringUSA
Show all 13 subprocessorsShow fewer
- SSlack · Customer Support and Internal CommunicationUSA
Compliance leadership
The person who leads Subsplash's SOC 2 isn't listed yet. Claim this profile to add it.
Penetration test
Unknown. Subsplash's penetration test vendor isn't listed yet.
Claim this profile to add it.
Recent updates
Subsplash Renews EU-US Data Privacy Framework MembershipJan 2025
Subsplash has renewed our membership in the Data Privacy Framework (DPF) program. This participation allows personal data to freely flow to the United States from the European Union, United Kingdom, and Switzerland without the need to enter into additional transfer terms such as the Standard Contractual Clauses (SCCs). To participate in the DPF program, Subsplash completed its self-certification to the International Trade Administration of the US Department of Commerce via the Department's DPF program website and publicly committed itself as an organization to comply with the DPF Principles of notice, choice, security, data integrity and purpose limitation, access, recourse and enforcement, and accountability for onward transfers. Subsplash's participation in the DPF program reinforces our dedication to GDPR-driven privacy and data protection principles. You may find Subsplash’s listing on the DPF website here and refer to the details outlined in the EU-US, UK Extension To The EU-US, Swiss-US Data Privacy Framework in our updated Privacy Policy.
This listing is partial
6/11 details · 55%SOC2C shows the verified essentials. 5 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.
- Auditorraises trustAdd the CPA firm that issued your SOC 2 so buyers can verify who signed it.
- Report dateraises trustAdd your most recent report period so buyers see how current your SOC 2 is.
- Renewal dateAdd your renewal window so buyers know your coverage is active.
- DocumentsList the documents you share (SOC 2 report, SOC 3, pen-test summary, DPA) and whether each is public or on request.
- Security controlsConfirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.
Frequently asked
Is Subsplash SOC 2 compliant?
Is Subsplash PCI DSS compliant?
Is Subsplash GDPR compliant?
Is Subsplash CCPA compliant?
Can I use Subsplash's SOC 2 for a vendor risk assessment?
Is Subsplash penetration tested?
Is Subsplash secure?
Does Subsplash have a bug bounty or vulnerability disclosure program?
Who are Subsplash's subprocessors?
Where does Subsplash host or store data?
Where is Subsplash's trust center or security page?
Where can I find information about Subsplash's uptime and downtime?
Do you encrypt data at rest?
Do you encrypt data in transit?
How do I report a security vulnerability?
Business & Industrial peers that completed SOC 2

Newsworthy.ai

Octopus Deploy

1099-Prep
