Security

Foundations trust us with applicant data and grant records. Here is how PalomaGrants protects them.

How we protect your data

Single sign-on

On Enterprise, staff sign in with your organization's own accounts, so access ends when someone leaves.

Multi-factor sign-in

Require a second step at sign-in for staff and reviewers.

Each funder's data kept apart

Every funder's data is isolated from every other funder's, and every request is checked against the funder it belongs to.

Full audit history

Every change is recorded with who made it and when.

Hosted in the United States

PalomaGrants runs on Microsoft Azure in U.S. data centers.

Compliance

A SOC 2 audit is planned. Until it is complete, we're glad to fill in your security questionnaire and walk your team through how PalomaGrants handles data.

Ask a security question
Something went wrong on this page. Reload 🗙