Security and Privacy
We understand that keeping data safe is a paramount priority.
Katmai is a cloud-based solution accessible via standard internet browsers, hosted by AWS data centers that hold certifications such as ISO 27001 and SOC2.
Have support questions? Head on over to our Help Center.
Can't find what you're looking for?
-
Data Security
Katmai is a cloud-based solution, hosted by AWS data centers that hold certifications such as ISO 27001 and SOC2. For further details on compliance, please explore AWS Security and AWS Compliance.
-
Data Localization
Our application servers are located in North American and Europe, but are accessible from around the world via the internet.
We are currently in development for country-specific hosting for companies who have more stringent data sovereignty needs. -
Uptime & Reliability
We continually monitor and assess our service performance and use automatic alerts to ensure prompt responses to service disruptions.
Katmai's code undergoes auditing and peer review prior to being deployed on production servers.
We are in the process of publishing a public uptime monitor.
Uptime and reliability is a key focus, given that many companies run their real time communications on Katmai. -
Platform Development
Katmai continually improves our platform through feature additions, bug fixes, and performance enhancements multiple times per month.
Our development cycle includes stage and testing environments, peer review, dedicated QA, soaking on beta servers, and multiple approvals before being deployed to production.
Production data is kept separate from development environments.
We work regularly with third party companies to conduct Pen Tests, such as Rapid7 and Synopsys. -
Authentication
Katmai's standard product offers username + password authentication, as well as Google SSO.
Our Enterprise product offers Identity Provider Integration for managed onboarding, off-boarding, and administration.
We currently support Amazon Federate, and are building support for Okta, Azure, Office365, and others. -
Encryption
The audio and video conversations and associated data is secured with encryption both while in transit and at rest. All connections Katmai's services utilize encryption and are provided through SSL/TLS. The Services are only accessed through HTTPS.
-
Information Gathered
The PII gathered is First Name, Last Name, and Email.
-
Incident Response
If a security breach occurs, our team will quickly inform you about any unauthorized access to your data.
If your security team requires additional logs to investigate an incident impacting your organization, our security team will collaborate and responsibly grant access as necessary. -
Privacy Rights
Our full privacy policy is available here.
Your data privacy:- We do not record your video or audio.
- We do not sell your personal data.
Audio and visual privacy:
- We created our patented sound zone system to ensure no one other than the intended persons can hear you. While you’re in Katmai, we provide a clear indication of who exactly can hear you at any moment.
- Screen shares are only viewable by users in the same sound zone.
Communication encryption:
- Audio and video streams are encrypted using industry-standard TLS encryption while in transit.
- Katmai chat features client-to-server encryption for secure communication. We do not store chat history.
- Katmai screen sharing is encrypted in transit and is not stored locally or in the cloud.
Role-based security:
- Log in securely using your username and password.
- Space access may be assigned by users with the “Space Access” permission.
- Create a guest pass to give someone access to a single space limited by date, time, and duration.
Admin controls:
- Add or remove users to and from your organization.
- Define user roles by upgrading or downgrading permissions.
- Add or revoke users’ access to spaces.
.png?width=352&height=75&name=Main%20Logo%20Horizontal%20(6).png)