Submission data protection related questions.

  • belferek
    Asked on 13 maja 2024 21:09
    Jak wygląda ochrona danych osobowych osób, które wypełnią formularz?
    Czy możemy podpisać umowę dotyczącą ochrony danych osobowych?
  • Rene Jotform Support
    Replied on 13 maja 2024 21:22

    Hi Piotr,

    Thanks for reaching out to Jotform Support. Unfortunately, our Polish Support agents are busy helping other Jotform users at the moment. I'll try to help you in English using Google Translate, but you can reply in whichever language you feel comfortable using. Or, if you'd rather have support in Polish, let us know and we can have them do that. But, keep in mind that you'd have to wait until they're available again.

    Now, coming back to your question, regardless of which plan you have, all of your forms are served across a protected 256-bit Secure Socket Layer (SSL) connection that uses a SHA256 Certificate. It's industry-standard protection. For encrypted forms, submissions are encrypted with high-grade RSA 2048 on our user's computers, and then transferred and stored securely on our servers.

    Jotform’s data servers are co-located in a cloud-based architecture with Google Cloud and Amazon Web Services (AWS). Google Cloud data centers are hosted in Iowa (USA). AWS data centers are located in Frankfurt, Germany (EU), and Virginia (USA). Hosting Jotform on these major cloud platforms also provides us with some extra benefits with the implementation of security-best practices in areas like hardware lifecycle management, physical security, and network infrastructure. Our servers are regularly updated and patched.

    By default, Jotform automatically sets the account created within the EU region compliant with GDPR. You can check out details in GDPR Compliance. You can also enable Form Encryption to add another layer of security to your form submissions. If you're collecting personal health information, you can also enable HIPAA compliance to your account. To learn more about how Jotform secures online forms, please check this guide. Currently, we do not have the kind of process to letting our users sign a contract in regards to data protection.

    Let us know if you have any other questions.