Source
Security page — Asana
Checked for Asana on 15 Sep 2026
- Page
- https://asana.com/security
- Checked
- 15 Sep 2026, 14:52 UTC
- How we may use it
- Public page, crawling permitted
Technical details
- type
- page
- http status
- 200
- content hash
- sha256:7d6a89aec5ff1aef7d7252a07e0f389d77c7a2fc39fece3db12714bad85c4e50
- permission
- robots_ok
- screenshot
- Screenshot on file (internal exhibit, not published)
Cited by
Facts read from this source
-
Badges Report an error
“ISO 27001 SOC 2 Type II GDPR SOC 3 CCPA CSA STAR 1 DORA EU-US DPF HIPAA ISO 27017 ISO 27018:2019 ISO 27701 SOC 2 Type I TX-RAMP VPAT”
-
Audits Report an error
“One or more annual third-party audit(s)”
-
Penetration testing Report an error
“Annual third-party penetration testing”
-
Cyber insurance Report an error
“Has cyber insurance”
-
Mdm Report an error
“Has a formal mobile device management (MDM) program”
-
Disaster recovery Report an error
“Has a disaster recovery plan”
-
List Report an error
“Subprocessors list available”
-
Bug bounty Report an error
“Has a bug bounty or vulnerability disclosure program”
-
Deletion on request Report an error
“Deletes customer data on request”
-
API Report an error
“Has an API available”
-
SSO iam Report an error
“Uses a centralized IAM solution (SSO) to manage employee access”
-
Status page Report an error
“Has a status page”
-
Privacy policy Report an error
“Has a privacy policy”
-
AI policy Report an error
“Has an AI policy”
-
Vulnerability reporting Report an error
“Report a vulnerability at: security@asana.com”
-
Security head Report an error
“Justin Berman: Head of Security”
-
Description Report an error
“Asana is a project management tool to help teams organize, track, and manage their work across teams.”
-
Data access Report an error
“Asana will store data about the projects that you manage on the platform, so the sensitivity may vary based on the projects in scope.”
-
Gov SOC 2 report Report an error
“Asana Gov Platform - 2026 SOC 2 Type 1 - Report”
-
Platform SOC 2 HIPAA report Report an error
“Asana Platform - 2026 SOC 2 Type 2 + HIPAA - Report”
-
Platform soc3 report Report an error
“Asana Platform - 2026 SOC 3 Type 2 - Report”
-
AI pen test Report an error
“Asana AI Feature Penetration Test Summary (2025-09)”
-
Pen test summary Report an error
“Asana Penetration Test Summary Report (2025-09)”
-
AI fact sheet Report an error
“Asana AI Fact Sheet (August 31, 2026)”
-
Tia Report an error
“Transfer Impact Assessment (2024)”
-
Document count Report an error
“36 Documents 58 FAQs 15 Badges”
-
Faq categories Report an error
“Access Management 6 answers Application and Data Security 17 answers Availability 1 answer Continuity and Disaster Recovery 1 answer Device Management 4 answers Encryption 1 answer Incident Management 1 answer Network Security 8 answers Other 4 answers Personnel Security 1 answer Physical Security 1 answer Privacy 7 answers Risk and Vulnerability Management 1 answer Secure Development 2 answers”
1 fact read from this page is not shown because it could not be confirmed on the page as captured.
Scores citing this record
- The Bootstrapper Integrations
- The Bootstrapper European sovereignty
- The Bootstrapper Support & documentation
- The Bootstrapper Support & documentation
- The Data Protection Officer European sovereignty
- The Data Protection Officer Support & documentation
- The Data Protection Officer European sovereignty
- The Enterprise Architect Integrations
- The Enterprise Architect European sovereignty
- The Enterprise Architect Support & documentation
- The Enterprise Architect Support & documentation
- The Integrator Integrations
- The Integrator European sovereignty
- The Integrator Support & documentation
- The Skeptic Integrations
- The Skeptic European sovereignty
- The Skeptic Support & documentation
- The Skeptic Support & documentation
- The UX Purist Integrations
- The UX Purist European sovereignty
- The UX Purist Support & documentation
- The UX Purist Support & documentation