Skip to main content

Data Security and Privacy at WiseStamp

Ensuring your privacy, confidentiality, and safety is one of our top priorities. Our solution is based on a comprehensive infrastructure that keeps all your data secure.

We use recognized information security systems and standardized data protection procedures to secure your personal information. WiseStamp is fully compliant with data processing regulations, such as the GDPR, as well as with local personal privacy rights (e.g., provisions for California residents). Our dedicated Data Protection Team is responsible for monitoring and advising on our ongoing privacy compliance.


How do we protect your data?

Here are just some of the ways in which we keep your information safe and secure:

  • All communications and interactions are protected with in-transit encryption using the TLS protocol.

  • Our solution contains built-in spam detection mechanisms and cyber attack prevention tools. Periodic penetration testing is routinely conducted on our products and infrastructure.

  • Our platform is hosted by recognized cloud infrastructure providers that meet certified protection standards, including SOC 2 Type II, ISO 27001, and more.

  • Our Google integration mechanisms adhere to the Google API Services User Data Policy, including the Limited Use requirements.


Where is WiseStamp's infrastructure hosted?

By default, WiseStamp's infrastructure runs on AWS and Google Cloud. If your legal team requires it, a US-based contracting entity is available.

If EU data residency is a requirement for your organization, WiseStamp also offers a dedicated EU environment. See the EU data residency section below.


Is WiseStamp safe for my email?

Yes, we’re completely safe to use with your email client! We never access, store, or read your email content. Our security includes in-transit encryption using TLS protocol, spam detection mechanisms, and cyber attack prevention tools. We’re hosted by top cloud providers meeting SOC 2 Type II, ISO 27001, GDPR, and HIPAA compliance standards, and we can sign a Business Associate Agreement (BAA) for healthcare organizations that require one. For server-side deployment, we process each account in complete isolation and only store basic info needed for signatures like name and job title – never email content. We also meet Microsoft AppSource security requirements.
Your emails stay private and secure with us.


Does WiseStamp keep an audit log of admin activity?

Yes. For Enterprise accounts, WiseStamp maintains a record of admin actions and configuration changes on the account. This audit information supports your security and compliance needs, such as tracking who made a change and when.

This log is not a self-service report inside your account. If your organization needs audit information, for example for a security review or a compliance request, contact the WiseStamp support team or your Customer Success Manager and we will provide the relevant details.


Does WiseStamp offer EU data residency?

Yes. For customers who require their data to be held in the EU, WiseStamp offers a dedicated EU environment. Your data is stored and processed on EU-based infrastructure, with region-specific endpoints, and it excludes our US-based subprocessors, as detailed in our subprocessor list and privacy policy.

A few things to know about the EU environment:

  • EU-specific access: Customers on the EU environment access WiseStamp through EU-specific endpoints. To keep your data in the EU environment, all users should use these EU endpoints and avoid mixing EU and US environments.

  • Guided onboarding: The EU environment uses a guided setup handled by WiseStamp. Self-service signup is not available for the EU environment.

  • Feature availability: Some features are not available in the EU environment. Your WiseStamp CSM can confirm what is supported for your setup.

If EU residency is on your requirements list, contact the WiseStamp support team or your Customer Success Manager, and we will provision you into the EU environment and walk your team through the setup.

Need more information?

You can read more about how we protect your data in these resources:

Did this answer your question?