Trust Center

수천 개의 기업이 데이터 기반 인사이트를 통해 엔지니어링 성과를 향상시키기 위해 Findy Team+을 신뢰하고 있습니다. 저희는 고객 데이터 보호를 우선시하여 이러한 신뢰를 얻고 유지하기 위해 최선을 다하고 있습니다. 저희의 보안 시스템을 이용하면 안심하고 개발팀의 성공을 이끄는 데 집중할 수 있습니다.

User Security

Multi-factor Authentication

Findy Team+ log-in functionality includes the option to set up multi-factor authentication. Administrators can ensure that all users have multi-factor authentication enabled.

Single Sign-on Support

In addition to user ID and password authentication, SAML-based SSO authentication is available for customers on the Enterprise plan. Supported IDPs include Okta and Microsoft Entra ID (formerly Azure AD).

Temporary Login Suspension

If a password is entered incorrectly multiple times, the account will be locked and the user will need to try again after a set period of time.

Role-Based Access Control

Findy Team+ has three types of roles to manage user privileges: Administrator, Manager, and Staff.

  • Administrator: Full access to view data and manage user settings.

  • Manager: Full access to view data and some access to manage user and team privileges.

  • Staff: Access to only individual data and data from the assigned to team.

Access Log Retrieval

Upon customer request, access logs are available to be retrieved and delivered as a CSV.

Data Security and Management

Data Encryption

All data is encrypted using industry-standard protocols both in transit (using TLS) and at rest (AES-256 GCM).

Data Usage

To deliver our service effectively, we access specific metadata related to your organization's activities on developer platforms like GitHub, GitLab, and Bitbucket. This encompasses pull requests, git commits, issues, and account details, with access granted via OAuth authentication. See our Privacy Policy for more details on how user and customer information is managed.

Retention and Deletion of Data

Customer data is retained during the active subscription period. If a customer cancels their subscription, we will delete the data within one month upon receiving a deletion request.

Penetration Tests

Routine penetration tests on our applications are regularly performed by external vendors.

Infrastructure Security

Cloud Platform Security

Findy Team+ is hosted on Amazon Web Services (AWS) data centers located in Tokyo, Japan. AWS's compliance documentation and audit reports are publicly available on the AWS Cloud Compliance Page and the AWS Artifacts Portal.

Access Control

Access to databases is restricted to necessary members only, with all access being logged.

Disaster Recovery

Production data is backed up daily. Redundancy is supported through AWS multi-availability zones.

Compliance

We have obtained ISMS certification ISO27001:2013.

Contact Us

Reach out to our dedicated support team (ft-global@findy.co.jp) for any further inquiries or assistance regarding security, privacy, or compliance matters.