Security and trust
Operational controls for sender infrastructure that cannot drift quietly.
InboxGreen is built to keep authentication, change control, and incident response readable by the teams who own deliverability in production.
Core controls
The basics are visible, documented, and maintained.
The trust center should answer routine vendor review questions without forcing people into a sales motion just to understand how the product is operated.
Security practices
Controls are only useful when the operating rhythm is clear.
InboxGreen keeps the security lane intentionally practical: test, monitor, respond, and leave an evidence trail teams can review.
Trust center
Documentation for procurement, security review, and day-two operations.
Keep the supporting material in one place: reports, system status, architecture detail, and the vendors involved in delivering the service.
Reports
Downloadable reports
Access our security compliance documentation
- SOC 2 Type II Report (under NDA)
- Penetration Test Summary
- DPA (Data Processing Agreement)
Visibility
Audit logs access
Customer-visible event logs for transparency
Track all actions taken within your account including configuration changes, API calls, and user activities.
- Available on Professional and Enterprise plans
- 90-day retention (Enterprise: 1 year)
- Exportable in CSV and JSON formats
Architecture
Security whitepaper
Technical deep dive on our architecture
Comprehensive documentation covering our infrastructure design, data isolation strategies, encryption implementation, and security controls.
Download Whitepaper(PDF, 2.8 MB)Vendors
Subprocessors
Third-party service providers we use
Operations
Real-time system status
Monitor uptime, maintenance, and incidents in the same tone as the rest of the product instead of jumping into a disconnected utility screen.
This security page was last updated on