Cloud Privacy Policy
Overview
Excellentable Cloud is a cloud based spreadsheet integrated with Atlassian Cloud. Each subscriber's applications are physically located on a server in a dedicated, locked cage at our data center partners. Our data center partners provide power, network and backup services. Addteq owns and rents servers to power Excellentable Cloud. For servers that it owns, Addteq is responsible for provisioning, monitoring, and managing the servers, and for providing support to Excellentable Cloud subscribers. For servers that it rents from third party vendors (via AWS or Digital Ocean), Addteq monitors and manages the servers, in addition to providing support to Excellentable Cloud and Codefactori subscribers.
Data storage
Our platform was designed and optimized by us specifically to host your applications and has multiple levels of redundancy built in. The applications themselves run on a separate front-end hardware node than that on which the data is stored. Hardware failure of the compute node is recovered automatically. Application data is stored on a RAID 10 (mirrored and striped) storage node which is replicated to a secondary storage node every four hours. If the primary storage node has a problem or becomes unavailable, the applications can be switched over to the secondary storage node.
Facilities
Access to the data centers is limited to authorized personnel only, as verified by biometric identity verification measures. Physical security measures include: on-premises security guards, closed circuit video monitoring, man traps, and additional intrusion protection measures. Within the data center, all Addteq equipment is stored in locked cages designed to be earthquake-proof. Our data centers are located in geographically diverse locations across the United States.
People and access
Our global support team maintains an account on all cloud systems and applications for the purposes of maintenance and support. This support team accesses hosted applications and data only for purposes of application health monitoring and performing system or application maintenance, and upon customer request via our support system. Within Addteq, only authorized Addteq employees have access to application data. Authentication is done via individual passphrase-protected public keys, rather than passwords, and the servers only accept incoming SSH connections from Addteq and internal data center locations. Excellentable Cloud is designed to allow application data to be accessible only with appropriate credentials, such that one customer cannot access another customer's data without explicit knowledge of that other customers' login information. Customers are responsible for maintaining the security of their own login information.
The Addteq operations team monitors the Excellentable Cloud platform 24x7 from operation centers in Princeton and Pune. Information about system uptime is publicly available on our Cloud Status Page.
Certification
To augment 3rd party application penetration testing we have performed, we have selected data center providers that maintain industry-standard certifications.
Our data centers are SOC-1 (formerly SAS 70) compliant. These certifications address physical security, system availability, network and IP backbone access, customer provisioning and problem management.
Our Cloud operations and security have been evaluated against the Cloud Security Alliance (CSA) standard.
Backups
Application database backups for Excellentable Cloud occur on the following frequencies: Multi-site backups are performed daily and each database operation is saved in multiple geographically located data centers.
Privacy
Addteq understands the importance of ensuring the privacy of your personally identifiable information. For more information, please see our Privacy Statement.
NOTE: This Security Statement applies to the Excellentable Cloud app only.
Effective as of October 1st, 2017.