ISO 27001
Our ISO 27001 certification reflects an approach to information security that meets internationally recognized standards.
Security at Shareback
Shareback protects your data with robust encryption and strict access controls, keeping security, privacy, and compliance at the core of how we work.
Visit Trust Center
Certified & compliant
Our ISO 27001 certification reflects an approach to information security that meets internationally recognized standards.
Shareback meets SOC 2 requirements for protecting your data and managing it securely across our systems.
Based in the UK, our technical team operates under GDPR and its rigorous requirements for handling and protecting personal data.
Data separation
Each client’s data and insights stay private. Never added to market data.
Never shared with other clients.
Private, by design
Your data is stored in a siloed environment, 100% isolated from both Shareback and our other customers.
ISO/IEC 27001 certified, to meet the highest, global security compliance standards.
First rule of Shareback: we will never train AI models on your data.
Your data stays protected with encryption both in transit and at rest.
Security that fits your firm
Comprehensive support for SSO methods (SAML or OIDC) and JIT provisioning. We support IDP-initiated and SP-initiated SSO, domain claim enforcement, and MFA.
Shareback web application communications use TLS 1.2 encryption, which is the same level of encryption used by financial institutions. All Shareback data is encrypted at rest using AES-256 encryption.
Each customer environment is physically and logically isolated, with dedicated infrastructure, data stores, and access controls. Customer data is never commingled or accessible across tenant boundaries.
Security explained
You retain ownership of your data. We use your content to deliver Shareback’s service to your firm. We never use it to train our models, sell it to third parties, or use it for advertising.
Content you upload and information you store in Shareback are encrypted both in transit and at rest. We use TLS 1.2 or higher during transfer and AES-256 for stored data.
Only authorized users can access your data, with permissions determined by their role. Shareback supports SAML or OIDC single sign-on, just-in-time provisioning, and multi-factor authentication. We log and monitor access to support audits.
You keep ownership of your data after leaving Shareback. Contact support@shareback.com to request a copy or ask for it to be deleted. We delete personal information once there is no lawful basis for keeping it. Certain records, including billing information, are retained as required by law.