Our Commitment: Protecting Your Data
Overview
Security
Data Ownership and Residency
Data Encryption
- In transit using TLS 1.2 or better;
- At rest using AES 256 or better;
- SSAE-16 certified hosting.
Compliance With Privacy and Security Standards
GDPR
The General Data Protection Regulation increases protection for persons whose personal information has been processed as well as the accountability of those involved in this processing.
Platform Access Management
Personal Health Information
A Highly Secure Cloud Environment
In order to offer the highest level of security and confidentiality, the Petal platform is hosted on the renowned Microsoft Azure cloud servers.
Microsoft Azure complies with the highest security standards as well as several international standards and certifications such as ISO/IEC 27001: 2013, ISO 27018, HDS, FedRAMP, SOC 1, 2 and 3, PCI DSS, HIPAA.
Proven Security Measures
Petal works continuously to prevent, detect and respond to cyber-attacks and incidents beyond its control.
Petal's security policies and practices are based on the industry’s best standards, such as ISO 27001, NIST and OWASP for application security.