Logo - Full (Color)
Skip to content
 

Security, Privacy, and Control

Your business runs on trust, that's why it runs on HubSpot.

With HubSpot’s end-to-end approach to data security, privacy, and control, each product includes tools that empower your teams to achieve compliance with confidence and security infrastructure that keeps your data safe.

Last Updated: April 18th, 2023

Trusted By

We've got your back

HubSpot is trusted by over 228,000 customers
in over 135 different countries.

  • KPMG
  • WWF
  • GoFundMe
  • Cybereason
  • LegalZoom
  • CancerIQ

Need the fine print? We've got you covered. Check out our Trust Center to access documents and reports, and to learn about HubSpot’s data privacy, security, and compliance. Download our SOC3 and SOC 2 Type 2, our latest penetration test summaries, the HubSpot Security Overview, and more above.

Hear HubSpot's leaders give a high-level overview of the end-to-end approach HubSpot takes to data security, privacy, and controls.

  1. crafted-not-cobbled-security

    Crafted, not cobbled

    When your tools are cobbled together without a solid foundation, each tool has a different standard for security or protocols for controlling data. Too much data spread across systems leaves gaps and cracks.

    HubSpot is crafted, not cobbled.

    Our product team takes a forward-thinking approach to privacy and security with the “Mainsail”, a framework for building a secure, reliable, and consumer-grade product. We don’t build anything new unless we are meeting the security and privacy standards we’ve laid out.

Scale your company with software you can trust

  1. secure-by-design

    Secure by design

    The core tenets of HubSpot’s security program are to safeguard customer data and to maintain customer trust. 

    HubSpot uses a defense-in-depth approach to implement layers of security throughout our organization. We’re passionate about defining new security controls and continuously refining our existing ones.

    Our security program is driven not only by compliance and regulatory requirements, but also by industry best practices like the OWASP Top 10 and the CIS Critical Security Controls and threat intelligence.

  2. privacy-protection

    Privacy and protections

    Whether you’re using HubSpot products that are free or paid, feature-rich or lightweight, HubSpot works hard to maintain the privacy of data you entrust with us.

    Data you store in HubSpot products is yours -- we put our security program in place to protect it, and use it only as permitted in our Customer Terms of Service and Privacy Policy. We never share your data across customers and never sell it.

  3. compliance-with-confidence

    Compliance with confidence

    Whether it’s GDPR or a similar local regulation, it’s more important than ever that your teams be mindful of data privacy.

    With product features such as “GDPR delete” that permanently deletes record data, “lawful basis to communicate” consent tracking, subscription settings, and cookie tracking consent banners that are customizable across regions -- HubSpot makes it easier than ever to comply with GDPR and similar regulations.

Have questions? Give us a call and we'll walk you through it.

1 888 482 7768

Data security, privacy, and control that scales with you.

HubSpot’s CRM platform was built for your front office teams -- the backbone of our products’ success is providing a safe and trustworthy place for your data.

HubSpot employs the same sophisticated security measures of secure software development processes, infrastructure management, and alerting methodologies across the entire CRM platform.

  • Security
  • Privacy
  • Control

Security

Keep your data safe and protected from bad actors.

Platform security

Popular Features
Standard SSL Certificate
Secure your content and lead data with standard SSL on all HubSpot-hosted content. It gives your visitors peace of mind, and can also increase visibility in search results.
Single sign-on (SSO)
Let users sign in to HubSpot using single sign-on credentials, making it easy for them to log in while enhancing security and your control over who has access.
Two-factor authentication
With two-factor authentication (2FA) enabled, logging in requires verification using a second device, such as your mobile phone.
Custom Domain Security Settings
Allow your IT teams to manage the security of your HubSpot-hosted content, dictating how external visitors access your website for maximum protection.
Password-protected pages
Password-protect website pages and landing pages, giving you the ability to control who can see the content on a specific page
Memberships
Restrict access to specific HubSpot-hosted web pages, landing pages, and blog content by requiring visitors to log in with a username and password.

Privacy

Manage customer data while being mindful of local regulations.

cookie privacy settings

Popular Features
GDPR deletion

Permanently delete a contact and prevent accidental re-creation.

Lawful basis processing

We’ve overhauled our subscription setup to make “lawful basis to communicate” easy to track, including consent. You can track both opt-ins and opt-outs in HubSpot.

Consent and cookies

Capture a visitor’s consent for cookie tracking, and use different versions of the consent banner depending on page or regional needs.

Control

Control access to your customer data as you scale.

Content Partitioning

Popular Features
Field-level permissions

Disable the editing of specific properties for certain reps to keep your team efficient and your database clean.

User roles

Give each team member using your account the right permission levels for different functionality.

Hierarchical teams

Organize users on multiple levels based on team, region, business unit, brand, or any other dimension, to suit the way your business works.

Partitioning
Give teams different permissions for your blog posts, site pages, emails, forms, CTAs, lists, or workflows based on role, region, and more, so they can only see and edit content relevant to them.
Admin tools
Includes permissions, partitioning, exporting user permissions, and more.
Data sync
Automatically sync data two ways between HubSpot and dozens of popular third-party apps. Only available for select HubSpot-built integrations.

GDPR Compliance

We've enhanced HubSpot’s CRM platform to enable easier compliance with GDPR.

Learn more

Privacy Policy

The official source for all things data privacy at HubSpot.

Learn more

Legal Overview

Your one stop shop for all legal documentation available for HubSpot.

Learn more

HubSpot Reliability

How we keep customer data safe and build a platform that's reliable.

Learn more

Mainsail Framework

A framework for building a secure, reliable, consumer-grade product.

Learn more

Cloud Infrastructure FAQs

Quickly find answers and general information about the HubSpot Cloud Infrastructure hosted on AWS.

Learn more

SSL and Domain Security

Read knowledge base documentation to learn about how these features work.

Learn more

Real-Time Status

Get real-time information on system status and security.

Learn more

CMS Hub Platform and Hosting

Get the details on how CMS Hub provides your IT teams with all the tools they need for proper website monitoring.

Learn more

Frequently Asked Questions

Scale your business with software you can trust.

Your business runs on trust, and that’s why it runs on HubSpot. Get started with the #1 customer platform for scaling businesses.

Smiling Person