Data Privacy &
Security at Dromo
Dromo is built from the ground up to keep your data private.
With Dromo, Your Data Stays Yours
At Dromo, we believe the best way to secure data is to not have it at all. The Dromo Importer uses a unique architecture which keeps data processing contained entirely within your app. By default, Dromo never sees your user's data.
With Dromo's Private Mode, Dromo processes your imports completely in your user's browser, handing off the data directly to your app's frontend code, where you can send the data directly to your app's database or backend API.
AI-Driven Imports,
Zero Data Sharing
The Dromo Importer gives your users the power of AI-enabled column matching and data transformation, without ever sending your import data to Dromo or any other third party.
With Dromo, you get the best of both worlds, harnessing AI to streamline your import process and save your users time, while ensuring custody of your data stays exactly where it belongs: with you.
Comprehensive Compliance
Dromo undergoes rigorous controls and audits to ensure our products and processes are secure end-to-end. You can rest assured that your imports are safe in our hands.
SOC 2 Type II Certified
Dromo adheres to the highest standards of security and availability as attested by our SOC 2 Type II certification.
HIPAA Compliant
As a HIPAA compliant entity, Dromo meets stringent standards to protect sensitive patient health information. We can enter a standard Business Associate Agreement (BAA), making using Dromo with PHI easy.
GDPR Ready
With Dromo's privacy-first architecture, GDPR compliance is a breeze. You can add Dromo to your app without worrying about data custody implications or subprocessor issues.
Learn more about Dromo's compliance and certifications in our Trust Center.
Industry Standard
Encryption
Dromo encrypts all data and metadata at rest and in transit, always. Data at rest is secured using military-grade AES-256 encryption, and data in transit uses TLS v1.2 or higher.
Our data encryption practices are one part of our comprehensive layered approach to data security.
Advanced Deployment Options
Need Dromo to handle data persistence while following strict data security requirements? Dromo has you covered.
-
Bring Your Own Storage
With Dromo's Bring your own storage (BYOS), Dromo can persist import results directly to a cloud storage bucket owned by you. By giving Dromo write-only access to your cloud storage, Dromo can send your data directly to your app without ever having access to it.
-
On-premise Deployment
For the strictest data security requirements, self-hosted deployments are available to run the entire Dromo system on your infrastructure.
Talk to an expert
We'd love to talk with you about how Dromo can meet your data import needs.
Book a call with our sales engineers