Trust At Ubico
Siddharth Pattnaik avatar
Written by Siddharth Pattnaik
Updated over a week ago

At Ubico, we take trust and data protection very seriously. 


Below is a list of privacy and security features that we have in place to keep your data safe and secure. 

Email Integration & Security

We integrate email through Nylas. Nylas has best in class security and privacy features. Nylas is SOC2 Certified, GDPR compliant, EU Privacy Shield Certified, and HIPAA ready. Nylas regularly undergoes rigorous third-party audits and penetration tests.

Data for each account is isolated with multi-level permission checks at both the application and service layers. All API calls require proprietary OAuth2 authentication tokens only granted by Nylas. User data is encrypted at rest using enterprise-grade standards.

Nylas systems enforce TLS for public and private networks, and only support certificates signed by well-known CAs. Persistence and storage layers are encrypted and secured behind VPN & VPC firewalls.

Only limited security personnel have access to decryption keys for debugging. We regularly undergo third-party audits. We utilize thorough background checks on all our employees.

We monitor our systems constantly and industry alerts to immediately patch security vulnerabilities in the software we use.

Physical Security

We are hosted on AWS who provide robust, physical data centre security and environmental controls.

Data Usage

We don't mine or access your data for advertising purposes.

Data Privacy

We only use customer data to provide the service; we don’t look into your account without your permission.

Data Ownership

Your data 100% belongs to you. We won't delete data in your account without giving you time to export it.

Integrated Services

We use OAuth2 to securely authorize other SaaS services and do not store your username or password for those services.


FAQ

  1. Why do I need to integrate my email account?
    Our system needs access to your email account in order to send emails on your behalf and track people that have responded from the workflows. 

  2. Does whitelisting my Gsuite domain give you access to every user's data?
    No, when you whitelist Gsuite you are giving access to team members the ability to sync their accounts for workflow purposes. Only synced accounts will be authenticated. 

  3. Does Ubico read and have access to all my emails?
    No, our system has strict processes in place to only ever look at email addresses that are being tracked by our platform, this includes data that is generated by Ubico, data that you import and CRM data that you integrate. We only store data that is relevant to Ubico workflows. 

  4. Who owns the data we store in your service? Will you use our data to target me or my company with ads?
    At Ubico, we believe you own and control your data. We do not use your data for anything other than providing you with the service to which you have subscribed. We do not scan your emails or documents for advertising purposes. 

  5. Can we get our data out of your service?
    Yes, simply reach out to support and request the data you would like exported or deleted from our database. 

  6. How do you ensure that your service is reliable?
    We monitor our services at all times and you can visit that status by going to status.ubico.io 

  7. I have another question about my data and email connection
    Please reach out to support@ubico.io with your questions and we will happily follow up with more information. 

Did this answer your question?