Skip to main content

Is Bonfire SOC 2 Compliant?

Our current compliance status and security practices

Bonfire Team avatar
Written by Bonfire Team
Updated over 2 weeks ago

Yes — Bonfire is SOC 2 compliant. This means our systems, infrastructure, and internal processes have been independently audited and verified to meet the Service Organization Controls (SOC 2) security framework.

SOC 2 compliance demonstrates our commitment to protecting your data and operating with the highest standards of trust and security.


What SOC 2 Compliance Means

SOC 2 is a widely recognized security standard developed by the American Institute of Certified Public Accountants (AICPA). It evaluates how well a company safeguards customer data and ensures systems operate securely and reliably.

Bonfire’s SOC 2 certification covers the following trust principles:

Trust Principle

What It Means

Security

Systems and data are protected against unauthorized access

Availability

Our platform is reliably available and operational

Confidentiality

Sensitive information is protected and controlled

Integrity

Data is processed accurately and securely

Privacy

Personal information is collected, stored, and managed responsibly

SOC 2 compliance ensures that your organization’s data — and your supporters’ data — is protected with industry-leading controls.


How Bonfire Protects Your Data

We use a comprehensive security approach that includes:

  • Secure data encryption in transit and at rest

  • Continuous monitoring and security logging

  • Strict access controls and authentication requirements

  • Regular vulnerability assessments and penetration testing

  • Disaster recovery and business continuity planning

  • Internal security policies and employee training

  • Vendor and third-party security reviews

Our compliance program is continuously monitored and updated as standards evolve.


Can I Access Bonfire’s SOC 2 Report?

Yes — we can provide our SOC 2 Type II report upon request.

To request a copy, please contact our team:

  • Enterprise or nonprofit partner? Reach out to your Bonfire representative

For security reasons, we may require a signed NDA before sharing the report.


Questions?

If you have questions about Bonfire’s security practices or compliance, our team is here to help.

Contact us at support@bonfire.com

Did this answer your question?