Does the developer periodically perform penetration testing?
Yes
We conduct regular testing as an integral part of our development and testing processes for new features
Does the developer have a dedicated security and privacy point of contact for such issues or questions?
Yes
contact@appsolution.live
Does the app restrict redirects and forwards only to approved destinations, or show a warning when redirecting to potentially untrusted content?
Yes
Within the app, we do not redirect to untrusted content. However, some embedded links, depending on customer usage, may contain redirection options that are beyond our control.
Does the app protect against mass parameter assignment attacks?
Not answered
Does the app perform encoding and sanitization on all user supplied parameters to protect against Cross-Site Scripting?
Yes
All inputs is encoded by the ReactJS before being injected into the DOM.
Does the developer protect all state-changing actions against Cross-Site Request Forgery (CSRF)?
Not answered
Does the developer have mechanisms to notify monday.com in case of a security breach?
Yes
Upon discovering a security breach, the initial step is to notify the monday.com support team.
Does this developer have a process for installing application-level updates and security patches for the service (such as software packages and databases)?
Yes
Before applying any updates or patches, we test them in a staging environment to ensure compatibility and stability. After deployment, we perform checks to verify that the updates are applied correctly and the application is functioning as expected.
Compliance
Is the app certified with the information security standard ISO/IEC 27001:2022?
Not answered
Is the app compliant with the Health Insurance Portability and Accountability Act (HIPAA)?
No
Is the app certified with System and Organization Controls (SOC 2 or SOC 3)?
No
Is the app compliant with the General Data Protection Regulation (GDPR)?
No
Data
Does the app send any data outside of monday.com? If yes, indicate whether the data is customer-submitted (e.g., board names, item names, doc content) or non-customer-submitted (e.g., account ID, board ID, user ID).
Not answered
Where does the app store logs data?
Not answered
Where does the app store the app data?
Not answered
Does the developer ensure application logs do not contain secrets or personally-identifiable information (PII)?
Yes
We proactively remove sensitive information from our application logs.
Is customer data segregated from the data of other customers (for example logically or physically)?
Yes
Data is stored on the customer's monday storage, with no other databases involved.
Privacy
Does the developer enforce multi-factor authentication on employees access to systems which may process customer data?
Not answered
Does the developer protect access to customer data based on the principle of least privilege?
Yes
Only the developer has access to customer data. No one else can access any data without the developer's permission.
Reviews
No reviews yet.
Historical data
Installation history
We have data for December 28, 2024 onwards only. Collected sometime after 00:00 UTC daily.
Total number of installs
Change in total number of installs in last 7 days
Compares the number of installs on each date with 7 days previously:
Max
Min
Current
Change in total number of installs in last 30 days
Compares the number of installs on each date with 30 days previously:
Max
Min
Current
Change in total number of installs in last 90 days
Compares the number of installs on each date with 90 days previously:
Max
Min
Current
Ratings history
Categories history
Each of the following is a yes/no answer, so the graphs show 1 for yes, and 0 for no.