Security & trust
Security and trust
How Jonta protects your work and your clients’ information. We only list what is true today.
Access control
- Granular permissions to view, create, manage, publish, release, archive, import and delete
- Built-in Admin, Developer and Client roles
- Clients only see information made available to their company
- Project-based teams: only members can be assigned work
- Incident publishing controlled separately from incident management
Accounts
- Optional two-factor authentication
- Failed-login protection
- Active-session visibility
- Other sessions signed out automatically after sensitive changes
- Accounts created by administrators, with no public self-registration
Accountability
- Audit log of activity, exportable to CSV
- Membership changes recorded in the audit trail
- Audited incident deletion
- Wiki version history with restore
Operations
- Liveness and readiness health endpoints
- Graceful shutdown that protects real-time connections
- Queued email delivery with retries and visible failures
Security questions
Questions about security, data protection or our sub-processors? Email contact@jonta.com and we will reply within one working day. Our data processing agreement and list of sub-processors are on the legal pages.