Effortlessly backup your boards, groups, items and docs
Board & Doc Backups is the all-in-one solution for creating backup snapshots of your monday.com data - boards, groups, items and docs - with just a few simple clicks. The app uses a dedicated workspace, within your monday.com, keeping your data private and under your full control at all times.
Create quick, snapshot-based backups, you can easily restore full boards, groups in a board, docs, or even select items without risking unauthorized access or data leakage.
Key Features:
✅ Complete workspace coverage: Safeguard everything from entire boards and groups to individual items and docs - no detail is too small.
📸 Multiple snapshots for objects: Leverage powerful versioning by creating multiple snapshots of the same object over time, making it simple to revert to any previous iteration.
🛡️ No third-party risks: All backups remain within your monday.com environment, eliminating external storage concerns and enhancing overall security.
🧘 Peace of mind: Avoid disruptions, reduce risks, and gain the reassurance that every vital update, note, or deliverable can be retrieved at a moment’s notice.
With Board & Doc Backups, you can confidently meet internal privacy standards and regulatory requirements without compromising on functionality. Enjoy the convenience of effortless backup snapshots and instantaneous restoration, knowing your monday.com data remains protected around the clock.
Does the app restrict redirects and forwards only to approved destinations, or show a warning when redirecting to potentially untrusted content?
Yes
The app doesn't perform any redirects to links outside of monday or internal resources
Does the app protect against mass parameter assignment attacks?
Yes
We explicitly verify all assigned parameters one by one. Additionally, we don't use auto binding/wiring libraries for parameter assignments.
Does the app perform encoding and sanitization on all user supplied parameters to protect against Cross-Site Scripting?
Yes
We use React to sanitize all inputs and frontend controls natively. We don't use dangerouslySetInnerHtml or base64 encoded data.
Does the developer protect all state-changing actions against Cross-Site Request Forgery (CSRF)?
No
Not applicable
Does the developer have mechanisms to notify monday.com in case of a security breach?
Yes
In the event of a security breach, we will notify monday.com within 24 hours
Does this developer have a process for installing application-level updates and security patches for the service (such as software packages and databases)?
Yes
We deploy application level updated through automated pipelines. Critical and High vulnerabilities - 7 days. Medium and Low vulnerabilities - no specific timeline
Compliance
Is the app certified with the information security standard ISO/IEC 27001:2022?
Not answered
Is the app compliant with the Health Insurance Portability and Accountability Act (HIPAA)?
Not answered
Is the app certified with System and Organization Controls (SOC 2 or SOC 3)?
Not answered
Is the app compliant with the General Data Protection Regulation (GDPR)?
Not answered
Data
Does the app send any data outside of monday.com? If yes, indicate whether the data is customer-submitted (e.g., board names, item names, doc content) or non-customer-submitted (e.g., account ID, board ID, user ID).
No
Where does the app store logs data?
aws
Log data is stored in Heroku (hosted on AWS)
Where does the app store the app data?
DB
Does the developer ensure application logs do not contain secrets or personally-identifiable information (PII)?
Yes
We filter out all secrets and PII from logs using log filtering means.
Is customer data segregated from the data of other customers (for example logically or physically)?
Yes
Customer data is segregated logically through account IDs
Privacy
Does the developer enforce multi-factor authentication on employees access to systems which may process customer data?
Yes
Multi-factor authentication is enforced across all systems in our toolchain
Does the developer protect access to customer data based on the principle of least privilege?
Yes
All customer data is encrypted. Nobody from the company has access to customer data by default.
Reviews
No reviews yet.
Installation history
We have data for December 28, 2024 onwards only. Collected sometime after 00:00 UTC daily.