Security

We follow the security best practices and take privacy of your data on Getform extremely seriously for our customers and our organization. Learn how we keep Getform and your data safe.

Application & Data Center Security

We keep your data safe. Getform uses Amazon Web Services (AWS) to host all of our applications and static resources.

Our application and data servers reside in the 🇪🇺 EU regions of AWS. AWS meets a variety of industry compliance standards such as SOC1, SOC2, SOC3, ISO 27001, ISO 27017 (cloud security), ISO 27018 (Cloud Privacy), PCI DSS v3.2 and HIPAA verified by a third-party.

Form Tampering & Spam Protection

All forms accepting submissions on Getform are automatically setup to prevent tampering with browser developer tools which protects your form from unintended behavior and costly consequences. We offer the most robust spam protection in the industry automatically blocking 98.5% of all spam submissions. We’ve implemented multiple spam filters including A.I to check against bot and human spam.

Data Encryption & Ownership

All submission data is encrypted at rest with AES-256 encryption. Data in transit is protected by TLS 1.2 or greater for end-to-end communication security.

SSL

Getform's official website, documentation website, the official blog and hosting servers are only accessible via HTTPS connection using 256-bit SSL certificates.

Best Coding Practices & Team Expertise

Our team of engineers have experience working on highly scalable and secure systems with more close to 10 years of software development & maintenance experience. We always have someone on call to monitor the system to keep it reliable and address any issues or outages as fast as possible.

We use industry best practices in our application development stages to ensure your account is secure. We make deployments of the code of new features only when a thorough test has been done on our staging environment.