Make monday.com work with Microsoft 365 & SharePoint →
Loom Embed for monday logo

Loom Embed for monday

Satisfaction Drivers

77 installs, since March 6, 2025.   4 installs/month.   App updated June 30, 2025. Listing updated May 13, 2026.

Hosted by monday.com Paid No touch

Embed Loom videos in monday.com for seamless team sharing

Transform Your Workflow with Loom Integration for monday.com


Loom Integration brings the power of video messaging directly into your monday.com workspace, enhancing communication and collaboration effortlessly!


Key Features:

  • Effortless Integration: Quickly embed Loom videos into your Boards, Items, Subitems, Workdocs, Dashboards, and Views in monday.com
  • Interactive Playback: Play, pause, fast forward, rewind, and adjust playback speed all within monday.com
  • Full-Screen Viewing: Enjoy an immersive viewing experience without ever leaving your monday.com workspace


🚀 Transformative Use Cases:

  • Visual Progress Updates: Easily share video updates on project progress, ensuring your team understands key achievements and upcoming tasks
  • Training and Onboarding: Create engaging training modules and onboarding videos that new team members can access directly within monday.com
  • Asynchronous Communication: Record video messages to explain tasks, provide feedback, and share ideas, ensuring everyone is aligned, regardless of their time zone
  • Client Updates and Demos: Deliver personalized client updates and product demos that can be embedded in client-facing boards, adding a professional touch to your communications
  • Feedback and Review: Enhance code and design reviews with detailed video explanations, making the review process more efficient and effective


Don’t let important details get lost in text - show them with Loom!

👉 Install Now and start transforming your team’s communication with the power of video

🔒 Full GDPR and CCPA Compliance

Your data is fully protected. Neither we nor any third parties have access to your information through this app


💬 We’re Here for You!

Got a question or need assistance? Reach out through our support form.

Need a quick demo or have questions, book a call with Serena here

Security & Compliance

Security

Does the developer periodically perform penetration testing?

Not answered

Does the developer have a dedicated security and privacy point of contact for such issues or questions?

Yes
Yes. We have a dedicated security and privacy point of contact for inquiries, support, and incident-related communications. Security & Privacy Contact: Serena Hagen (Data Protection Officer) serena@<satisfactiondrivers.com> Please remove "<" & ">" before sending email.

Does the app restrict redirects and forwards only to approved destinations, or show a warning when redirecting to potentially untrusted content?

Yes
Redirect behavior is restricted to approved and trusted destinations only. The app does not support arbitrary user-controlled redirects or forwarding. Any external navigation is limited to approved services such as Loom or official support resources and is always initiated explicitly by the user. Authentication and embedded playback flows are handled directly through Loom’s secure infrastructure, and the app does not introduce additional redirect paths beyond those required for the integration experience.

Does the app protect against mass parameter assignment attacks?

Yes
Yes. We protect against mass parameter assignment by enforcing strict server-side validation and allowlisting accepted parameters only. Unexpected or unauthorized fields are rejected automatically. In addition, the embedded monday.com environment provides additional permission and context isolation controls. For Loom-related functionality, permission handling and video access controls are additionally enforced by Loom’s own platform.

Does the app perform encoding and sanitization on all user supplied parameters to protect against Cross-Site Scripting?

Yes
Yes. All user-supplied input is treated as untrusted and processed using server-side validation, sanitization, and context-aware output encoding to protect against Cross-Site Scripting (XSS). The app does not render raw HTML or executable scripts from user input. Embedded Loom content is rendered through secure embedded playback mechanisms, while browser isolation and security protections are additionally enforced by monday.com and Loom platforms.

Does the developer protect all state-changing actions against Cross-Site Request Forgery (CSRF)?

Yes
Yes. All state-changing operations are protected against CSRF using industry-standard protections appropriate to the request flow, including anti-CSRF tokens, request validation, and SameSite cookie protections where applicable. Authentication and session integrity checks are also enforced to prevent unauthorized requests. Additional protections are provided by monday.com’s embedded application framework and Loom’s authentication infrastructure where applicable.

Does the developer have mechanisms to notify monday.com in case of a security breach?

Yes
Yes. We maintain an incident response and escalation process that includes procedures for identifying, investigating, containing, and reporting security incidents. If an incident impacts customer data, the monday.com platform, or the app itself, monday.com will be notified promptly through the appropriate communication channels, along with relevant remediation and impact details as they become available.

Does this developer have a process for installing application-level updates and security patches for the service (such as software packages and databases)?

Yes
Yes. We maintain a documented process for monitoring, testing, and deploying security updates and application patches across dependencies, infrastructure, and supporting services. Security advisories are regularly reviewed, and critical vulnerabilities are prioritized for expedited remediation through controlled deployment workflows that include testing, staged rollout, and rollback capabilities where necessary.

Compliance

Is the app certified with the information security standard ISO/IEC 27001:2022?

Not answered

Is the app compliant with the Health Insurance Portability and Accountability Act (HIPAA)?

Not answered

Is the app certified with System and Organization Controls (SOC 2 or SOC 3)?

Not answered

Is the app compliant with the General Data Protection Regulation (GDPR)?

Yes
Yes. The app is designed and operated in alignment with GDPR principles, including privacy-by-design and data minimization practices. The integration does not independently store or persist customer-submitted monday.com content, and any embedded Loom content remains governed by the customer’s Loom permissions and policies. We implement appropriate technical and organizational safeguards to protect customer data and support applicable privacy obligations

Data

Does the app send any data outside of monday.com? If yes, indicate whether the data is customer-submitted (e.g., board names, item names, doc content) or non-customer-submitted (e.g., account ID, board ID, user ID).

Yes
Yes. The app may communicate limited non-customer-submitted technical identifiers required to render embedded Loom content and maintain integration functionality, such as user session context or embed configuration metadata. Customer-submitted monday.com content (such as board names, item names, updates, or Workdoc content) is not transferred externally for storage or processing by the app. Embedded video playback and hosting are provided directly through Loom’s infrastructure.

Where does the app store logs data?

monday
We are using logging services provided by monday.com.

Where does the app store the app data?

monday
We are using storage services provided by monday.com.

Does the developer ensure application logs do not contain secrets or personally-identifiable information (PII)?

Yes
Yes. Application logs are intentionally designed to exclude sensitive information, including credentials, authentication tokens, customer-submitted content, and personally identifiable information (PII). Logging is limited to minimal operational and technical events necessary for monitoring, reliability, and troubleshooting purposes. We also do not use session replay tools or external logging systems that capture user screens, keystrokes, or private customer content.

Is customer data segregated from the data of other customers (for example logically or physically)?

Yes
Yes. Customer data is logically segregated through monday.com account and workspace boundaries, along with associated authentication and access controls. Embedded Loom content access is additionally protected by Loom’s own permission and sharing model. The app does not independently persist customer data outside the monday.com environment, reducing the risk of cross-customer exposure.

Privacy

Does the developer enforce multi-factor authentication on employees access to systems which may process customer data?

Yes
Yes. Multi-factor authentication (MFA) is enforced for employee access to systems that may process or manage customer-related data, including cloud infrastructure, development environments, and administrative tooling. Access permissions are restricted according to least-privilege principles. For Loom-hosted content and authentication workflows, MFA capabilities and enforcement are managed by Loom according to the customer’s Loom account configuration.

Does the developer protect access to customer data based on the principle of least privilege?

Yes
Yes. Access to systems and operational tooling is restricted according to the principle of least privilege using role-based access controls. Employee access is limited to only what is necessary for operational support, maintenance, or security purposes. Privileged access is monitored, logged, and periodically reviewed. The app does not persist or independently access Loom video content beyond what is required for embedded playback within monday.com. Data

Reviews

May 8, 2025

RE: I have sent numerous emails to support and have yet to receive a response. I want to use this app, and upgrade to a paid plan, but they don't seem to want my business

Historical data

Installation history

We have data for December 28, 2024 onwards only. Collected sometime after 00:00 UTC daily.

Total number of installs

Change in total number of installs in last 1 day(s)

Compares the number of installs on each date with 1 days previously:

Max
Min
Current

Change in total number of installs in last 7 day(s)

Compares the number of installs on each date with 7 days previously:

Max
Min
Current

Change in total number of installs in last 30 day(s)

Compares the number of installs on each date with 30 days previously:

Max
Min
Current

Change in total number of installs in last 90 day(s)

Compares the number of installs on each date with 90 days previously:

Max
Min
Current

Change in total number of installs in last 180 day(s)

Compares the number of installs on each date with 180 days previously:

Max
Min
Current

Ratings history

Categories history

Each of the following is a yes/no answer, so the graphs show 1 for yes, and 0 for no.

In "Featured" category?

In "Editor's choice" category?

In "Trending this week" category?

App metadata

ID: 10000753App ID: 10158134Listing updated: May 13, 2026