---
title: "Security statement"
canonical: "https://support.appfire.com/space/SECC/477726704/Security%20statement"
format: markdown
---
> Macro (aura-html)

This page contains security information about Security & Encryption for Confluence Cloud<span style="color: #000000">.</span>

> ℹ️ The [Appfire Trust Center](https://trust.appfire.com/) has the latest information on the security, privacy, and compliance of our products and services.

# Data

- we never store any Confluence data on our servers

# Access

- Security & Encryption is an Atlassian Connect app, which means most features rely on Confluence retrieving and sending data to and from Security & Encryption's server. The data being exchanged depends on the page or content

> ℹ️ For technical details about Atlassian Connect, refer to [Atlassian's Connect FAQ](https://developer.atlassian.com/cloud/bitbucket/faqs/)

- we take great care to secure the connection between your Confluence and our own infrastructure
- we do not access or store your Confluence credentials anywhere

> ℹ️ For more technical details about the encryption process and where encryption keys are stored, [refer to our knowledge base page](https://appfire.atlassian.net/wiki/spaces/SECC/pages/477726532)

# Privacy

Appfire understands the importance of privacy

- read our [Privacy Policy](https://appfire.com/privacy-policy) for more information

Our apps are fully compliant with [GDPR](https://appfire.com/gdpr).

You may also like to view our

- [EULA](https://appfire.com/eula/)
- [Acceptable Use Policy](https://appfire.com/acceptable-use-policy/)

# Frequently asked questions

<details>
<summary>Can I have more detailed information about data retention, internal procedures, risk management, etc.? Do you provide help in answering third-party vendor questionnaires?</summary>

**Appfire Trust Center**

The <u>[Appfire Trust Center](https://trust.appfire.com/)</u> connects you to the latest information on the security, privacy, and compliance of Appfire products and services, to give you the reassurance and trust you need when buying and using any Appfire app.

Appfire has received a recommendation for certification for ISO 27001 and ISO 27017, and has also completed its SOC 2 audit. Details of internal procedures as well as our SOC 2 audit and status are available in the [Appfire Trust Center](https://trust.appfire.com/?itemUid=7bfa66da-33ab-49de-8391-e329738a1ae9&source=click).
</details>

<details>
<summary>Can you provide your data processing agreement/addendum?</summary>

#### Data Processing Agreements

Strong data protection commitments are a key part of GDPR’s requirements. In compliance, Appfire will provide a signed data processing agreement upon request. Simply contact us using this <u>[request form](http://appf.re/gdpr)</u>.

- you can access our [data processing agreement](https://trust.appfire.com/?itemUid=c4223a81-5840-4e11-ac9f-2b812794a67e&source=documents_card) within the [Appfire Trust Center](https://trust.appfire.com/)
- contact our [support team](https://appfire.atlassian.net/servicedesk/customer/portals) and we can provide the DPA upon signing an NDA between Appfire and your company

If you have any questions regarding Appfire’s approach to GDPR, please see our <u>[GDPR Frequently Asked Questions](https://appfire.com/eula-faq/#gdpr-faq)</u><u>.</u>
</details>