Make monday.com work with Microsoft 365 & SharePoint →
Figma Embedded logo

Figma Embedded

Collabsoft

2.4 (5)

7,094 installs, since December 13, 2021.   164 installs/month.   Updated March 24, 2024.

Free Existing legacy
Gallery image Gallery image Gallery image

Figma is the #1 design application and is now available on monday.com!

Figma is the #1 design application and is now available on monday.com. Using the Embedded Figma app, you can embed your designs right into your Item view, Board view, or Dashboard views. Now you can easily keep designers, developers, and the rest of your team in sync! Unlike sharing screenshots and exports, the app will embed a live version of your design which updates in real-time to reflect changes made in the Figma file - no manual updates required.


To get started:

  1. Share your Figma file
  2. Copy the share link
  3. Paste & Embed it into monday.com

Security & Compliance

Security

Does the developer periodically perform penetration testing?

Not answered

Does the developer have a dedicated security and privacy point of contact for such issues or questions?

Not answered

Does the app restrict redirects and forwards only to approved destinations, or show a warning when redirecting to potentially untrusted content?

Yes
All user input is checked using Regular Expressions and are required to match a specific input pattern.

Does the app protect against mass parameter assignment attacks?

No
We do not have a back-end nor store any customer data

Does the app perform encoding and sanitization on all user supplied parameters to protect against Cross-Site Scripting?

Yes
We do not encode or sanitise data, but all user input is checked using Regular Expressions and are required to match a specific input pattern.

Does the developer protect all state-changing actions against Cross-Site Request Forgery (CSRF)?

No
Our app does not have a back-end and as such does not make any requests that can be forged.

Does the developer have mechanisms to notify monday.com in case of a security breach?

Yes
We will use the Marketplace Review board for the app and/or Slack

Does this developer have a process for installing application-level updates and security patches for the service (such as software packages and databases)?

Yes
Our infrastructure is hosted by Google Cloud Platform (Firebase) who is responsible for installing security updates regarding their services. Our applications are regularly scanned for vulnerabilities in, and updates to, 3rd party packages by Snyk. Any recommendations are immediately applied and released.

Compliance

Is the app certified with the information security standard ISO/IEC 27001:2022?

Not answered

Is the app compliant with the Health Insurance Portability and Accountability Act (HIPAA)?

Not answered

Is the app certified with System and Organization Controls (SOC 2 or SOC 3)?

Not answered

Is the app compliant with the General Data Protection Regulation (GDPR)?

Not answered

Data

Does the app send any data outside of monday.com? If yes, indicate whether the data is customer-submitted (e.g., board names, item names, doc content) or non-customer-submitted (e.g., account ID, board ID, user ID).

Not answered

Where does the app store logs data?

Not answered

Where does the app store the app data?

Not answered

Does the developer ensure application logs do not contain secrets or personally-identifiable information (PII)?

No
We do not log anything

Is customer data segregated from the data of other customers (for example logically or physically)?

No
We do not store any customer data

Privacy

Does the developer enforce multi-factor authentication on employees access to systems which may process customer data?

Yes
All systems using Google Workspace account based SSO, with MFA required

Does the developer protect access to customer data based on the principle of least privilege?

No
We do not store any customer data

Reviews

January 24, 2025

J: Les liens mis dans les items en marche pas on me met que l'url est pas dans le bon format alors que si !

July 3, 2024

ZV: coolap

June 14, 2024

JJ: Changed from free to Payment...

Installation history

We have data for December 28, 2024 onwards only. Collected sometime after 00:00 UTC daily.

ID: 10000023App ID: 10010660Listing updated: January 13, 2025