Kate Helin is Pendo’s DPO. A licensed lawyer who was introduced to data protection at the Department of Defense, Kate is responsible for defining and enforcing Pendo’s privacy policies across the company. More about her here.
CHUCK KESLER | CISO
Chuck Kesler is Pendo’s CISO. Chuck has led security programs for more than 10 years, and he brings to Pendo a focus on ensuring the company has strong controls around the data it has been entrusted to protect. More about Chuck here.
Trust matters: Pendo’s commitment to you
At Pendo, performance, security, and data privacy are first-order considerations, the north star for how we design our products and policies as an organization. We believe these principles need to be central to every decision we make, and everything we do as a company. That’s why we continue to make substantial investments in these areas to ensure that our solutions never negatively impact the integrity of your data, your users, or your application.
Investing in your security
Pendo observes key industry best practices and regulatory schemes to protect the security and privacy of our customers’ data: SOC2, GDPR, HIPAA, and Privacy Shield.
Data submitted to Pendo, and Pendo’s application, are processed and stored in a secure, multi-tenant environment provided by Google’s Cloud Platform. All data storage is encrypted by default, and a variety of logical segregation techniques are used to prevent one customer from accessing another customer’s data. Customers can choose between having their data hosted in Google’s data center facilities in either the United States or European Union.
All data hosted by Pendo is encrypted. Pendo uses industry-accepted encryption products to protect data at rest, with 256 bit AES encryption. All data transfers within the data center are secured by SSL. All of the Customer Data collected by Pendo is transmitted over SSL if the customer application is accessed via SSL.
The only identifying information that Pendo requires is a unique user ID for your end users. All other information is optional (but will provide for richer analysis and segmentation). Pendo does not collect any user-entered form field text in your application. You should avoid sending any of the following types of sensitive personal information to Pendo: government-issued identification numbers; specific financial information (such as credit or debit card numbers, any related security codes or passwords, and bank account numbers); information related to an individual’s physical or mental health; and information related to the provision or payment of health care.
Pendo retains all customer data as long as you are an active subscriber. All data will be removed from Pendo starting 90 days after a subscription is cancelled. Pendo customers can request that specific records in their data be removed based on the request of an individual who is the subject of that data. Specific record removal may incur additional charges depending on your plan level.
You are in control of and responsible for user authentication. Access to Pendo requires an email address and password combination. We encourage you to use strong passwords. Alternatively, depending on your plan level, you can choose SAML for single sign-on or Google-based logins. Administrators can disable password-based logins, and require authentication through Google. Authentication through Google supports two factor authentication, as do many SAML implementations.
Pendo has completed a SOC 2 Type 2 audit that included all five Trust Services Principles: Security, Availability, Processing Integrity, Confidentiality, and Privacy with no exceptions in related controls. In addition, Google AppEngine is SOC 2, SOC 3, ISO 27001, FISMA, and PCI compliant.
While there is no 3rd-party verified certification for GDPR compliance, Pendo is committed to acting in accordance with the GDPR regulations for all of our users - not just those in the EU. We are partnering with our customers to ensure the privacy and security of their and their customer’s data, and have implemented a number of data acquisition, access, and retention policy changes. See this article for additional detail about our GDPR support.
Pendo is designed to minimize the impact on your application. The client-side agent is only about 50 Kb and loads asynchronously. Data transmissions are queued and sent to the server every 2 minutes. Data is compressed before sending so that each transmission is less than 2 Kb.
Guides load with the Pendo agent. They will not be displayed until the current page is finished loading. The typical response time for guides is sub-second with guides almost always delivered in less than half a second.