Igdrasil logo

Igdrasil

Last updated Sep 16, 2026

Security and Compliance

Built for trust. Designed for accountability.

Igdrasil handles sensitive financial data, so security, privacy and compliance are built into how we design and operate the platform. We use documented controls, EU-based infrastructure, encryption, access controls and audit trails to protect customer data and keep financial workflows traceable.

GDPR
ISO 27001
146
controls
2
subprocessors

Compliance

2

Independently audited and continuously evidenced against the standards our customers rely on.

GDPR
In progress

GDPR

General Data Protection Regulation (GDPR)

Valid through
Sep 16, 2027
ISO 27001
In progress

ISO 27001

ISO/IEC 27001:2022

Valid through
Sep 16, 2027

Controls

146

The safeguards we operate across our organization, technology, people, and facilities.

Inventory Labels

Asset Management

Organization assets are labeled and have designated owners.

Reviewed Jul 27, 2026ISO 27001

Media Marking

Asset Management

Where applicable, Organization marks information system media indicating the distribution limitations, handling caveats, and applicable security markings (if any) of the information. Exemptions must be approved by management and remain in a specific controlled area.

Reviewed Jul 27, 2026ISO 27001

Asset Transportation Authorization

Asset Management

Organization authorizes and records the entry and exit of systems at datacenter locations.

Reviewed Aug 11, 2026ISO 27001

Maintenance of Assets

Asset Management

Equipment maintenance is documented and approved according to management requirements.

Reviewed Jul 27, 2026ISO 27001

Continuity Testing

Business Continuity

Organization performs business contingency and disaster recovery tests on a periodic basis and ensures the following: • tests are executed with relevant contingency teams • test results are documented • corrective actions are taken for exceptions noted • plans are updated based on results

Reviewed Jul 27, 2026ISO 27001

Business Impact Analysis

Business Continuity

Organization identifies the business impact of relevant threats to assets, infrastructure, and resources that support critical business functions. Recovery objectives are established for critical business functions.

Reviewed Jul 27, 2026ISO 27001

Capacity Forecasting

Business Continuity

Budgets for infrastructure capacity are established based on analysis of historical business activity and growth projections; purchases are made against the established budget and plans are updated on a quarterly basis.

Reviewed Jul 27, 2026ISO 27001

Backup Configuration

Backup Management

Organization configures redundant systems or performs periodic backups of data to resume system operations in the event of a system failure.

Reviewed Jul 27, 2026ISO 27001

Subprocessors

2

Third-party providers that process customer data on our behalf, and where they operate.

Amazon Web Services

Amazon Web Services

Other

Cloud infrastructure provider used to host applications and data.

Website
GitHub

GitHub

Software as a Service

Code hosting platform

Website

Questions about our security?

We're glad to help your security and procurement teams move quickly.