Security & trust,
by default
Protecting your applications and data is our top priority. Here's how we do it.
Certifications & frameworks
SOC 2 Type II
Independently audited controls for security, availability and confidentiality.
ISO 27001
Certified information security management system.
GDPR
Data Processing Addendum available for all customers.
HIPAA
HIPAA-ready workspaces with a Business Associate Agreement.
EU-US DPF
Participant in the EU-US Data Privacy Framework.
How we keep you safe
Encryption
TLS 1.2+ in transit and AES-256 at rest for disks, databases and backups.
Network isolation
Each workspace runs on an isolated private network with no shared tenancy at the network layer.
Access control
Least-privilege access for employees, hardware security keys and full access logging.
Vulnerability management
Continuous scanning, regular third-party penetration tests and a public disclosure program.
Incident response
24/7 on-call security team with documented, regularly tested response procedures.
Business continuity
Multi-zone redundancy, automated backups and tested disaster recovery plans.
Report abuse
See something on Nubra that violates our Acceptable Use Policy? Email [email protected].
Vulnerability disclosure
Found a security issue? Report it to [email protected]. We respond within one business day.
Security contact
For questionnaires and reviews, reach our security team at [email protected].
Third parties we work with
| Subprocessor | Purpose | Location |
|---|---|---|
| Cloud infrastructure provider | Hosting & compute | United States, EU |
| Email delivery provider | Transactional email | United States |
| Payments processor | Billing | United States |
| Support platform | Customer support | United States |
| Error monitoring | Application telemetry | United States |
Start building on Nubra today
Join millions of developers and teams. Free plan available, no credit card required.