Timescale is trusted by thousands of customers to run demanding production-level software with security at the heart ❤️ of everything.
SOC 2 Compliance
Timescale is SOC 2 Type 2 compliant. Our SOC 2 report is available to all customers on our Enterprise plan.
GDPR
Timescale fully complies with GDPR regulations, with all related requests handled via our support.
HIPAA compliance
Backups
All customer databases are continuously backed up to highly durable storage. Point-In-Time Recovery (PITR) is available to all database services.
Encryption in transit
Timescale requires industry-standard Transport Layer Security (versions 1.2+) encryption for all connections. All database services support client certificate verification modes. Critical internal traffic is protected by mutual TLS.
Encryption at rest
All data volumes, including backups, are encrypted at rest with unique keys specific to each service, and keys are automatically rotated at a regular cadence.
Intrusion detection/Pen test
Timescale regularly collaborates with external security audit firms to assess our security posture and intrusion detection capabilities.
MFA
Timescale offers secure Multi-Factor Authentication (or 2FA) for all customers.
SSO/SAML
SSO/SAML authentication is available to all customers on our Enterprise Plan.
Subprocessors
Vulnerabilities
Software developed by Timescale is constantly analyzed by static analysis security tools. Code is reviewed as changes are proposed and security design reviews take place as needed.
Data center security
Timescale runs all services on AWS data centers which have some of the highest levels of security and reliability available.
Support and operations
Security assistance
Engineering review for security best practices, making sure your Timescale deployment is secure from unauthorized access, data breaches, and other security threats.
Monitoring
Payments and PCI