Privacy, Security & Compliance

For: Smart-Tables / Smart-Mass-Update / Smart-Activity-Manager / DEDUP Manager

 

Last updated: Apr/9/2024

Compliance, Security, and Confidence:

  • ZaapIT's apps are Force.com hosted applications, meaning they run on Salesforce's servers inside the same datacenter. The data center is fully managed by Salesforce, which includes the following: network security, app login, upgrades, change management, system operations, restricted personal access to the facilities, disaster recovery, availability, processing, and physical security.
  • ZaapIT's code is compiled, stored, and runs on Salesforce's servers, as well as on the customer's local machine, specifically on the client side (using JavaScript, CSS, and HTML)
  • ZaapIT's apps respect Salesforce's native permissions (object / field data access policies - view/create/update/delete/sharing permissions) & Salesforce's sharing mechanism.
  • We do a Security Review at least once a year & we fix any known / reported security issue in a timely manner. 
  • We manage our apps & licenses by using a self-managed license Salesforce intance.
  • Access policy: ZaapIT doesn't have direct access to your Salesforce and your data - you can grant access to ZaapIT's support by going to Salesforce's setup>grant access>ZaapIT's Support or by going to My-settings>grant access > ZaapIT's support.
  • Standards & compliance: ZaapIT apps are 100% native force.com apps, the apps comply with the ISO 27001 standard. The relevant Salesforce's force.com platform certifications (ISO 27001, Soc2 and  ) applies to any 100% force.com app and force.com code are attached. The certifications, a Screenshot of the certifications.
  • SAS-70 type II compliant and GDPR compliant 
  • Salesforce Government Cloud + Salesforce Government Cloud Plus certified more details

Data & Privacy:

  • Our apps / services / website collect and store app usage statistics inside Salesforce's servers and inside google cloud (Google Analytics).
  • By Default our apps allow the end user to export his data to a differant apps or to send his data to a differant app (e.g. excel / outlook) - it is up to the end-user / admin to remove unwanted buttons and/or to set the relevant permissions to restrict those options.
  • Our Sales team may collect and store publicly available data and / or data provided to us during email communication with a prospect/customer. This data is stored inside our dedicated Salesforce orgs/servers and used during sales/renewal processes.
  • ZaapIT's DPA for customers who process EEA data: https://www.zaapit.com/page/data-protection-attachment
  • ZaapIT's DPA for customers who process UK data: https://www.zaapit.com/page/uk-data-protection-attachment
  • ZaapIT's cookies policy: https://www.zaapit.com/page/cookie-policy
  • For more info visit our Terms & conditions page for more information