OneCal Is Now SOC 2 Type II Compliant

Authors
Published on

Ready to Sync Your Calendars?

Create a OneCal account to sync multiple Outlook, iCloud and Google Calendars, create Booking Links, and much more.

Sign Up for FreeNo credit card required!

Security and privacy have always been fundamental to how we build OneCal. Today, we're excited to share an important milestone in that commitment: OneCal has successfully completed its SOC 2 Type II audit and is now SOC 2 Type II compliant.

This achievement independently validates the security practices, processes, and controls we have put in place to protect our customers and their data.

It also makes OneCal, to our knowledge, the first and only platform that offers calendar synchronization to successfully complete a SOC 2 Type II audit.

What is SOC 2 Type II?

SOC 2 is a widely recognized security and compliance framework developed by the American Institute of Certified Public Accountants (AICPA).

A SOC 2 Type II audit goes beyond simply evaluating whether security controls have been designed appropriately. Independent auditors also assess whether those controls have operated effectively over an extended period of time.

For our customers, this provides independent assurance that the security practices we describe are not just policies on paper, but processes that are actively implemented and followed throughout the organization.

Introducing the OneCal Trust Center

Alongside our SOC 2 Type II compliance, we're also launching the OneCal Trust Center, giving customers and security teams greater visibility into how we protect their data.

Through our Trust Center, you can review information about:

  • Our security and privacy policies
  • The controls OneCal has implemented
  • The subprocessors we use to provide our services
  • Our security and compliance practices
  • Our SOC 2 Type II compliance status

Organizations performing security reviews can also request access to additional documentation, including:

  • Our SOC 2 Type II audit report
  • Our latest penetration testing report

The Trust Center is designed to make vendor security assessments easier and give customers a centralized place to review OneCal's security posture.

Building a More Secure Calendar Platform

Calendar synchronization, Scheduling Links, and other calendar-related features require customers to trust OneCal with access to important business systems such as Google Calendar, Microsoft Outlook, and iCloud.

We don't take that responsibility lightly.

Completing a SOC 2 Type II audit represents another step in our continued investment in security, privacy, infrastructure, access controls, monitoring, incident response, and the internal processes used to operate OneCal.

It also provides our customers with independent verification that the controls protecting their data are functioning as intended.

For individuals and small teams, this means greater confidence that their calendar data is handled responsibly.

For larger organizations, IT departments, and security teams, SOC 2 Type II compliance makes it easier to evaluate OneCal as part of internal vendor security and compliance requirements.

Privacy and Security Remain a Long-Term Commitment

SOC 2 Type II compliance isn't the finish line.

Security is an ongoing process, and we'll continue reviewing and improving our controls as OneCal grows, our infrastructure evolves, and new security challenges emerge. Our goal is to continue making OneCal a calendar synchronization platform that organizations can trust with their most important calendars, without compromising on privacy or security.

We're proud of this milestone and grateful to all of the customers who trust OneCal every day.

You can visit the OneCal Trust Center to learn more about our security program, review our policies and subprocessors, or request access to our SOC 2 Type II and penetration testing reports.