๐ซ๐ท All of our Data is hosted in France on AWS Servers
We have received the ISO 27001 certification
We collect limited PII (Personal Identifiable Information) which is anonymized on send (details below)
Our main sub-providers are :
AWS (cloud)
Google (IdP)
Github (Version Control)
Vercel (Deployement)
URLs
Gaia IDs, encrypted
Timestamp
Time spent on a URL
Authentification method
Date of creation
Date of deactivation
Permissions
List of Users (email, name, Id, team, admin status)
Token of authentifications for external apps
Timestamp of tokens
Scopes granted to external apps
HR tools
Accounting software
Ticketing / ITSM systems
Messaging apps
All applications that are part of our Whitelist can be recognized by Corma. This whitelist currently contains more than 31,000 apps listed. This whitelist is also :
Editable
Continuously updated
Can contain custom client URLS for on premise applications accessed via the browser
Client companies must be using the following systems to work with us efficiently :
Google workspace or Microsoft Tenant ID (Azure AD) workspace
Use mainly Chrome, Chromium, Edge browsers or Firefox browsers
Have significant web-based SaaS-Usage
We currently support 3 methods of authentication into our app, all 3 methods are systematically included in all pricing versions :
Google SSO
Microsoft SSO
Email + Password