Demande de document de conformité de sécurité de Jotform

  • sfcum
    Demandé le 12 mai 2025 à 09:42

    Bonjour,

    Mon entreprise me demande de fournir un document émanant de la société Jotform attestant que cette dernière n’a pas accès aux données saisies ni aux pièces jointes déposées dans la base de données Jotform les données stockées doivent être chiffrées.

    En français, ce type de document est appelé "PASS SÉCURITÉ".

    Pourriez-vous me fournir ce document, ou tout autre justificatif équivalent ?

    Par ailleurs, pourriez-vous me confirmer si la plateforme Jotform est hébergée sur les serveurs de Google ?

    Notre entreprise autorise l’hébergement des données sur les serveurs de Google, à condition que ces données ne soient accessibles que par notre organisation.

    Il s’agit d’une exigence imposée par notre réglementation interne.

    Je vous remercie par avance pour votre retour.

    Bien cordialement,


    Hello,


    My company is requesting an official document from Jotform confirming that your platform does not have access to the data entered or to the attachments uploaded into the Jotform database. and that the stored data is encrypted.

    In French, this type of document is referred to as a "PASS SÉCURITÉ".

    Could you please provide such a document, or any equivalent proof of compliance?

    Additionally, could you confirm whether the Jotform platform is hosted on Google servers?

    Our company authorizes data hosting on Google servers only if the stored data is accessible exclusively by our organization.

    This requirement is imposed by our internal regulations.

    Thank you in advance for your support.


    Best regards,

  • Jason Jotform Support
    Répondu le 12 mai 2025 à 10:34

    Hi sfcum,

    Thanks for reaching out to Jotform Support. Our French Support agents are busy helping other Jotform users right now, so I'll try to help you in English using Google Translate, but you can reply in whichever language you feel comfortable using. Or, if you'd rather have support in French, let us know and we can have them do that. But, it might take a while until they're available again.

    Now, coming back to your question, Jotform does not have access to the data entered or the attachments uploaded to its database. The stored data is encrypted to ensure its confidentiality and security. More specifically, form data can be encrypted by the user with end-to-end encryption (RSA 2048-bit), meaning that only those with the encryption password can access the data.

    Regarding hosting, the Jotform platform is hosted on major cloud servers, including Google Cloud and Amazon Web Services (AWS). Google Cloud servers are located in Iowa (USA) and Frankfurt (Germany, EU), among other places. All data remains within the selected geographical region, allowing compliance with data residency requirements, particularly for the EU.

    Jotform uses a redundant architecture with data replication between Google Cloud and AWS to ensure continuity and data security. Server access is strictly limited and secured by advanced protocols, with only specific members of the technical team having access under highly controlled conditions.

    In summary, Jotform adheres to high security standards, including data encryption, GDPR compliance, PCI DSS, and other security certifications for the data centers used. You can check out our Security page for more information.

    Let us know if you have any other questions.

  • sfcum
    Répondu le 16 mai 2025 à 10:23

    Je vous remercie pour votre réponse.

    A bientôt,

Votre réponse