System Security
Raken Security
At Raken, we know how valuable your work is to you — after all, what’s more important than data you upload to Raken everyday? That’s why we work hard to respect your privacy and ensure that your data is always safe with us. Here are some of the ways in which we keep your data private and your work secure.
How is my data safe?
Complete control over who can access your data
- All entered data is private by default. Accessing your data requires a user to have a Raken account and be invited to view and modify your data by an authorized user of your account.
- You can also decide to make your data viewable by others with a shared link and to allow others to download the document.
Direct file access is protected behind the following security measures:
- All files are available through a URL (including images and, when enabled, the downloadable Raken document).
- Filenames are obfuscated for additional safety.
Where is my data stored?
All Raken data is stored in one of AWs's US datacenters. More on AWS security.
Is my data secure?
- All of our servers are within our own virtual private cloud (VPC) with network access control lists (ACL’s) that prevent unauthorized requests getting to our internal network.
- We leverage data encryption both at rest and in transit, meaning that your data is secured both while sitting in our databases, underlying storage, backups, replicas and snapshots and whlie being transported to serve requests for it.
- Only a handful of people can access customer data and they only do so in order to improve the services we provide.
- We monitor and audit our usage logs to prevent unauthorized access to customer data.
What Third Party services do you use?
We use a number of third parties to store user data in order to provide/improve our services:
- We send a monthly newsletter and product marketing updates using Marketo. These emails are only sent to customers who have opted-in to receiving marketing communications from Raken.
- We send transactional and administrative emails through Intercom and Sendgrid.
- We use Google Analytics to track page views to improve usability of our marketing website and both Web and Mobile Raken Apps.
- We use Datadog to track the internals of our Web and Mobile Raken Apps. This also includes certain data that correlates with the error, but does not include sensitive customer information (passwords, tokens etc).
- All payments are processed by Recurly. We don’t currently store any payment information or customer data from these transactions.
- We store user documents on Dropbox, Box, Google Drive, Egnyte based on your request.
Compliance
The environment that hosts the Raken services maintains multiple certifications for its data centers, including ISO 27001 compliance, PCI Certification, and SOC reports. For more information about their certification and compliance, please visit the AWS Security website and the AWS Compliance website.
You can find out more about our policies in our Terms of Service and Privacy Statement. If you have any questions about security at Raken, please contact our Customer Support team.