Security & compliance principles guide how we deliver our products and services.
AgeChecker.Net utilizes enterprise-grade best practices to protect our customers' data. We work with independent experts to verify security, privacy, and compliance controls, and have achieved a SOC 2 Type 2 report against stringent standards.
SOC 2 Compliance
AgeChecker.Net has successfully completed the AICPA Service Organization Control (SOC) 2 Type 2 audit. The audit confirms that our information security practices, policies, procedures, and operations meet the SOC 2 standards for security. Developed by the Assurance Services Executive Committee (ASEC) of the AICPA, the Trust Services Criteria is the set of control criteria to be used when evaluating the suitability of the design and operating effectiveness of controls relevant to the security, availability, or processing integrity of information and systems, or the confidentiality or privacy of the information processed by the systems at an entity, a division, or an operating unit of an entity.
AgeChecker.Net was audited by
Prescient Assurance, a leader in security and compliance certifications for B2B & SAAS companies worldwide. Prescient Assurance is a registered public accounting firm in the US and Canada that provides risk management and assurance services which includes, but not limited to, SOC 2, PCI, ISO, NIST, GDPR, CCPA, HIPAA, CSA STAR, and more.
Continuous Security Monitoring
AgeChecker.Net uses
Drata's automation platform to continuously monitor 100+ security controls across our organization. Automated alerts and evidence collection allows us to confidently prove our security and compliance posture any day of the year, while fostering a security-first mindset and culture of compliance across the organization.
Secure Personnel
AgeChecker.Net takes the security of its users seriously and ensures that only vetted personnel are given access to their resources.
- All contractors and employees undergo background checks prior to being engaged or employed by us in accordance with local laws and industry best practices.
- Confidentiality or other types of Non-Disclosure Agreements (NDAs) are signed by all employees, contractors, and others who have a need to access sensitive or internal information.
- We embed a culture of security into our business by conducting annual employee security training & testing using current and emerging techniques and attack vectors.
Secure Software Development
AgeChecker.Net utilizes a variety of manual and automatic data security and vulnerability checks throughout the software development lifecycle.
- All development projects at AgeChecker.Net follow secure development lifecycle principles.
- AgeChecker.Net deploys third party penetration testing and vulnerability scanning of all production and internet facing systems on a regular basis.
- All development of new products, tools, and services, and major changes to existing ones, undergo a design review to ensure security requirements are incorporated into proposed development.
- We perform static and dynamic software application security testing of all code, including open source libraries, as part of our software development process.
- Software development is conducted in line with OWASP Top 10 recommendations for web application security.
Cloud Security
AgeChecker.Net leverages the native physical and network security features of the cloud, enabling providers to maintain the physical access policies and procedures.
- Client's data protection complies with SOC 2 standards to encrypt data in transit and at rest, ensuring customer and company data are protected at all times. Our entire platform is continuously monitored both by automated means and by dedicated staff.
- We implement role-based access controls and the principles of least privileged access, and revoke access as needed
AgeChecker.Net is committed to providing secure products and services to safely validate digital identities across the globe. External audits provide independent assurance of our dedication to protecting our customers by regularly validating the security practices that we have in place.
If you believe you've discovered a bug in AgeChecker.Net's security, please get in touch at
security@agechecker.net. Our security team promptly investigates all reported issues.