Compliance is about: Regulations, Procedures, Controls, Standards, Documentation, Transparency
Certifications, data residency, and technical safeguards you can rely on — ISO 27001, GDPR and HIPAA covered.
At TimeBlndr we take the security and privacy of your data seriously. Our security policy, our certifications and our technical measures are all aimed at letting you trust that your data is in good hands with us — wherever you are based and whatever regulations you have to comply with.
Our certifications and compliance
- ISO 27001 certified. TimeBlndr is ISO 27001 certified, the international standard for information security. This certification is independently audited and confirms that we operate a structured information security management system (ISMS), including risk assessments, access management and continuous monitoring of our security measures.
- GDPR compliant. We process personal data in accordance with the General Data Protection Regulation (GDPR). Among other things, this means that we offer a data processing agreement (DPA), respect the rights of data subjects (such as access to, correction of and erasure of data) and do not retain data for longer than necessary.
- HIPAA compliant. For our customers in education, we work in line with the requirements of the Health Insurance Portability and Accountability Act (HIPAA), in particular where the protection of health data of students and staff within educational institutions is concerned. We offer a Business Associate Agreement (BAA) and apply appropriate technical and organizational safeguards to protect this data.
Choose where your data is stored
We understand that the location of your data is an important consideration for many organizations, for example because of internal guidelines or regulations. That is why TimeBlndr gives you the choice to store your data in the European Union or in the United States. You decide which region suits your organization best, and that choice is guaranteed throughout your use of TimeBlndr.
Compliance dashboard
For an up-to-date and detailed overview of our security measures, certifications and sub-processors, you can consult our compliance dashboard:
There you will find, among other things, the status of our certifications, an overview of the technical and organizational controls we apply, and the parties that process data on our behalf (sub-processors). On request, you can also use the dashboard to obtain additional documentation, such as our DPA or BAA.
Handling vulnerabilities responsibly
We think transparency about security is important. That is why we operate a public responsible disclosure procedure: security researchers and users who discover a vulnerability in our systems can report it to us in a safe and responsible way.
Questions about security or compliance?
Do you have questions about our security measures or compliance status, or do you need additional documentation for your own compliance process? Please contact us at security@timeblndr.com .