Bitwarden enforces a written security information program. Our program:</p> <ul> <li>aligns with industry recognized frameworks;</li> <li>includes security safeguards reasonably designed to protect the confidentiality, integrity, availability, and resilience of our users' data;</li> <li>is appropriate to the nature, size, and complexity of Bitwarden's business operations;</li> <li>includes incident response and data breach notification processes. and</li> <li>complies with applicable information security related laws and regulations in the geographic regions where Bitwarden does business.</li>
Previous Status: QUOTE NOT FOUND
Updated Status: DECLINED
Previous Status: DECLINED
Updated Status: APPROVED
Previous Status: PENDING
Updated Status: DECLINED
Previous Analysis: Generated through the annotate view
Updated Analysis: In the Privacy Policy, it states that "Bitwarden enforces a written security information program. Our program: aligns with industry recognized frameworks; includes security safeguards reasonably designed to protect the confidentiality, integrity, availability, and resilience of our users' data; is appropriate to the nature, size, and complexity of Bitwarden's business operations; includes incident response and data breach notification processes; and complies with applicable information security related laws and regulations in the geographic regions where Bitwarden does business." They also state that, "Transmission of data on Bitwarden is encrypted using SSH, HTTPS, and SSL/TLS. By design, your vault information is encrypted prior to being transmitted to our servers and is therefore encrypted at rest." Bitwarden is also open source.
Title: The user is informed about security practices
Analysis: Generated through the annotate view
Status: PENDING