Timescale’s SOC 2 report is available to all customers on Timescale Scale or Enterprise Plans.
Timescale fully complies with GDPR regulations, with all related requests handled via our support team.
We offer HIPAA (Health Insurance Portability and Accountability Act) compliance for Enterprise Plan subscribers.
Data notice at collection in compliance with the California Consumer Privacy Act. Read more in .
Timescale offers secure Multi-Factor Authentication (or 2FA) for all customers.
Timescale requires industry-standard Transport Layer Security (versions 1.2+) encryption for all connections. All database services support client certificate verification modes. Critical internal traffic is protected by mutual TLS.
All data volumes, including backups, are encrypted at rest with unique keys specific to each service, and keys are automatically rotated at a regular cadence. Data encryption keys with AWS-KMS, and Virtual Private Network (VPN) keys with OpenSSL, are both 256-bit key; website SSL certificates with TLS areis 128-bit key.
SSO/SAML authentication is available to all customers on Timescale Enterprise Plan.
All customer databases are continuously backed up to highly durable storage. Point-In-Time Recovery (PITR) is available to all database services.
Timescale runs all services on AWS data centers which have some of the highest levels of security and reliability available.
Credit card payments are processed through Stripe without storing personal credit card information.*
Timescale regularly collaborates with external security audit firms to assess our security posture and intrusion detection capabilities. Results of the tests are available by request.
Timescale keeps the list of data subprocessors .
Software developed by Timescale is constantly analyzed by static analysis security tools. Code is reviewed as changes are proposed and security design reviews take place as needed.
Privately link your application’s VPC to a dedicated VPC running Timescale Cloud, so traffic stays off the public internet while retaining low-latency performance.
Route traffic from different clouds, on-premise data centers and other AWS services through a single Timescale Cloud connection using AWS Transit Gateway.
Restrict access to your Timescale Cloud services to trusted IP addresses only, preventing unauthorized connections without the need for a Virtual Private Cloud.
Support is fully staffed 24x7 globally, with a based on issue severity. Contact us for your support and operations requests.
Engineering review for security best practices, making sure your Timescale deployment is secure from unauthorized access, data breaches, and other security threats.
Timescale uses 24/7 on-call rotations with internal escalations to monitor all systems. Subscribe to our for system- wide alerts.
*Credit card payments are processed through Stripe without storing personal credit card information. Corporate invoicing is also available to Customers spending at least $1000/month. Stripe is a certified PCI Service Provider Level 1, which is the highest level of certification in the payments industry.