Have an idea for a feature that would enhance Cadabra? Submit your request below!
Security & Compliance
Security
Does the developer periodically perform penetration testing?
Yes
Does the developer have a dedicated security and privacy point of contact for such issues or questions?
Yes
Does the app restrict redirects and forwards only to approved destinations, or show a warning when redirecting to potentially untrusted content?
No
The app does not have a frontend.
Does the app protect against mass parameter assignment attacks?
No
As our app has no access to secure information, we did not implement this.
Does the app perform encoding and sanitization on all user supplied parameters to protect against Cross-Site Scripting?
No
We do not store any customer data.
Does the developer protect all state-changing actions against Cross-Site Request Forgery (CSRF)?
No
We are not doing them as our application has no frontend and the requests are sent directly from the monday's board's.
Does the developer have mechanisms to notify monday.com in case of a security breach?
No
No, as we use monday's server, we cannot do that.
Does this developer have a process for installing application-level updates and security patches for the service (such as software packages and databases)?
No
Compliance
Is the app certified with the information security standard ISO/IEC 27001:2022?
Not answered
Is the app compliant with the Health Insurance Portability and Accountability Act (HIPAA)?
Yes
Is the app certified with System and Organization Controls (SOC 2 or SOC 3)?
No
Is the app compliant with the General Data Protection Regulation (GDPR)?
Yes
Data
Does the app send any data outside of monday.com? If yes, indicate whether the data is customer-submitted (e.g., board names, item names, doc content) or non-customer-submitted (e.g., account ID, board ID, user ID).
Not answered
Where does the app store logs data?
monday
Where does the app store the app data?
monday
Does the developer ensure application logs do not contain secrets or personally-identifiable information (PII)?
No
No customer data is stored or logged.
Is customer data segregated from the data of other customers (for example logically or physically)?
Yes
We are not storing any customer data.
Privacy
Does the developer enforce multi-factor authentication on employees access to systems which may process customer data?
No
As our app has no access to secure information, we did not implement this.
Does the developer protect access to customer data based on the principle of least privilege?
No
No customer data is stored or logged.
Reviews
No reviews yet.
Installation history
We have data for December 28, 2024 onwards only. Collected sometime after 00:00 UTC daily.