Our subcontractors
We pay particular attention to the choice of our subcontractors in order to guarantee the security of your data.
Certifications:
- PCI-DSS Certification
- ISO/IEC 27001 Certification
- SOC 1 TYPE II ET SOC 2 TYPE II Attestations
- STAR self-assessment – Cloud Security Alliance
- HDS approval
More information here.
GDPR:
You can find information about OVH’s GDPR policy here.
Certifications:
More information here.
GDPR:
You can find information about Amazon Web Services AWS’ GDPR policy here.
Certifications:
More information here.
GDPR:
You can find information about INGENICO’s GDPR policy here.
GDPR:
You can find information about SlimPay’s GDPR policy here.
Certifications:
More information here.
GDPR:
You can find information about Gocardless’ GDPR policies here.
Certifications:
-
PCI certified auditor
-
PCI certified provider level
-
SOC 1 type 1 & 2, SOC2 type 2
-
EU-U.S. and Swiss-U.S. Privacy Shield Framework
GDPR:
You can find information about Stripe’ s GDPR policies here.
Certifications:
You can find information about MobilePay’s privacy policy here.
GDPR:
You can find information about MobilePay’s GDPR policy here.
Certifications:
- PCI DSS
- PCI 3DS
- ISO27001
More information here.
GDPR:
You can find information about Nets Easy Payment Gateway GDPR policy here.
GDPR:
You can find information about fintecture GDPR policy here.
Systematic data encryption
iRaiser ensures the security of sensitive data by implementing advanced encryption protocols, safeguarding donor and transaction information. We partner with AWS Key Management Service (KMS) to create and control the encryption keys used to encrypt your data with FIPS 140-2 validated hardware security modules to protect the security of your keys.
High level of monitoring
Our team continuously monitors our solutions through a combination of automated tools and regular audits. They conduct penetration and load tests every 3 months. Additionally, we have implemented 24/7 monitoring of our systems to detect suspicious activities or anomalies, ensuring proactive responses to security incidents and maintaining compliance with the regulation.