SECURITY is OUR TOP PRIORITY

Security, Privacy & Control

We take an end-to-end approach to data security, privacy, and control so your data is always safe.

Powered by innovative technology

Here’s what we’RE ALL ABOUT:

Customer Data Protection

  • Encryption in-transit (TLS 1.2, TLS 1.3)
  • Encryption at-rest
    (AES-256)
  • Limited accessibility

Organizational Security

  • Security education & awareness training
  • 24/7 monitoring and incident response
  • Vendor risk management

Application Protection

  • Web application firewall (WAF)
  • Distributed denial of service (DDoS) protections
  • Regular vulnerability scanning
  • Bi-annual penetration testing

Infrastructure Security

  • Hosted on a leading cloud infrastructure provider (AWS)
  • Advanced monitoring and control

Experience unmatched protection with us

From encryption to external security assessments, we take a holistic approach, as your security is our utmost priority.

Disaster Recovery

Encryption

99% Uptime

SOC 2 Type 2 Compliant

General Data Protection Regulation

External Security Assessments

Distributed Denial of Service (DDoS) Protections

Disaster Recovery

Encryption

99% Uptime

SOC 2 Type 2 Compliant

General Data Protection Regulation

External Security Assessments

Distributed Denial of Service (DDoS) Protections

It’s all about the bigger picture

Our security and privacy standards are embedded in everything we do, from the tools we use to the features we launch.

We’ve equipped ourselves with industry-acclaimed tools like SonarQube, AWS Config, CloudWatch, and Docker to make our magic. Additionally, we don’t build anything new unless it upholds security and privacy standards. We use application vulnerability and malware monitoring/management using AWS Inspector and threat detection using GuardDuty.

Privacy’s as important as snacks

Stadium takes the same meticulous approach to your data as our products! We work diligently to maintain the privacy of the data you entrust with us.

Most importantly, the data you store in Stadium products is yours. We apply our security protocols for protection and use them only as permitted in our Customer Terms of Use and Privacy Policy. We never share your data with customers and never sell it—we pinky promise on snacks!

Compliance, no matter where you are

Whether it’s GDPR or similar local regulations, you deserve data privacy, regardless of where you are.

We offer product features like “GDPR delete” that permanently deletes record data, “lawful basis to communicate” consent tracking, subscription settings, and cookie tracking consent banners that are customizable across regions to make it easy to comply with GDPR and similar regulations.

Secure and magical by design

At Stadium, we add a magical flair to everything we do. We take that same precision with your customer data!

We take an extensive approach to implementing layers of security throughout our organization. We are also constantly iterating, defining new security controls, and improving our existing ones. Our security program is powered by compliance, regulatory requirements, and industry best practices.

Questions?

reach out, and we’ll be happy to help.

Data security and privacy that help us deliver magic

It’s important to us that our products provide a safe and trustworthy place for your data, ensuring the best experience. We use the same advanced security measures of secure software development processes, infrastructure management, and alerting methodologies across the platform and site.

Security

Keep all of your data safe and protected from bad actors.

popular features

– Standard SSL Certificate: Secure your content and lead data with standard SSL on all Stadium-hosted content. It gives your visitors peace of mind and can also increase visibility in search results.
– Single Sign-On (SSO): Let users sign in to Stadium using single sign-on credentials, making it simple for them to log in while enhancing security and your control over who has access. Visit here for more information.
Privacy

Manage customer data while being mindful of local regulations.

popular features

– GDPR Deletion: Permanently delete a contact and prevent accidental recreation.
– Consent and Cookies: Capture a visitor’s consent for cookie tracking and use different versions of the consent banner depending on page or regional needs.

Information about the subprocessors Stadium uses to support the delivery of our Services can be found in our list of Stadium subprocessors.

Reports

Read up on our data privacy, security, and control.
Email us at hi@bystadium.com for more information.

SOC 2 Type 2 Report

A restricted-use report about the security, confidentiality, and availability controls we have in place to protect customer data.

Penetration Test Report

A third-party penetration test summary report, including testing methodology, high-level findings, and remediation tracking.
Email us at hi@bystadium.com for more information.

GOT A QUESTION?

Frequently Asked Questions

Stadium’s product infrastructure is hosted on Amazon Web Services (AWS) in the United States East region. Stadium products are hosted with cloud infrastructure providers with SOC 2 Type 2 and ISO 27001 certifications, among others.

You bet we do! Stadium has confidential SOC 2 Type 2 reports attesting to the controls we have in place governing the availability, confidentiality, and security of customer data as they map to the TSPs. The report is available upon request at hi@bystadium.com.

We’re all about getting you your snacks! That’s why we’re committed to system availability by meeting a service uptime of 99% in a given calendar month.

All sensitive interactions with the Stadium products (e.g., addresses, login, authenticated sessions etc.) are encrypted in transit with TLS 1.2 or 1.3.

Stadium leverages several technologies to ensure stored data is encrypted at rest. The physical and virtualized hard drives used by Stadium product server instances as well as long-term storage solutions like AWS S3, RDS use AES-256 encryption. User passwords, addresses, and phone numbers are hashed and are encrypted at rest.

Please visit https://www.bystadium.com/sso for detailed information on how to set up SSO.

By Stadium