Compliance frameworks followed by Cold's Trust Center

Founded in 2024

Cold recognises that the confidentiality, integrity and availability of information and data created, maintained and hosted by us are vital to the success of the business and privacy of our partners.

As a service provider/product, we understand the importance in providing clear information about our security practices, tools, resources and responsibilities within Cold so that our customers can feel confident in choosing us as a trusted provider.

This Security Posture highlights high-level details about our steps to identify and mitigate risks, implement best practices, and continuously develop ways to improve.

Compliances (3)

Here are the compliance frameworks that Cold follows which showcases our adherence to industry-standard security guidelines and practices.

SOC 2

Compliant
SOC 2 is a voluntary compliance standard for service organizations, developed by the American Institute of CPAs (AICPA), which specifies how organizations should manage customer data. The standard is based on the following Trust Services Criteria: security, availability, processing integrity, confidentiality, and privacy.

GDPR

Compliant
The General Data Protection Regulation, a comprehensive data protection law in the EU, governs how organizations must protect personal data and privacy.

UK GDPR

Compliant
UK General Data Protection Regulation (UK GDPR) is the UK’s data protection law post-Brexit. It ensures organizations comply with UK-specific data privacy requirements.