Security and compliance at Cal.com

Everything you need to evaluate Cal.com as a vendor. Our certifications and controls are public. Audit reports are available once you accept our non-disclosure agreement, which takes about a minute.

ISO 27001 Certificate
Get access to the documents

Documents

Certification
ISO 27001 CertificateRestricted

Independent audit of our ISO 27001 security controls.

PDF · 587 KB

Get accessTell us who you are to access this document.
Report
ISO 27001 ReportRestricted

Full report detailing our ISO 27001 recertification audit.

PDF · 5.1 MB

Get accessTell us who you are to access this document.
Penetration Testing ReportRestricted

Independently conducted third-party penetration testing of the Cal.com application.

PDF · 2.6 MB

Get accessTell us who you are to access this document.
SOC 2 (Type 2) ReportRestricted

Independent audit of our SOC 2 security controls, demonstrating their ongoing effectiveness.

PDF · 29 MB

Get accessTell us who you are to access this document.
Policy
Breach Notification PolicyRestricted

PDF · 162 KB

Get accessTell us who you are to access this document.
Legal
Data Processing AgreementRestricted

Obtain a signed DPA with us to ensure data privacy compliance.

Get accessTell us who you are to access this document.

Controls

213 controls across 22 areas, each mapped to the frameworks we are audited against. Open an area to see what it covers.

Subprocessors
19 third parties process customer data on our behalf. The full list, with what each one does and where, is public.