CI/CD is the foundation of engineering productivity and speed. At CircleCI, we know that a team’s velocity must go hand in hand with building securely.
World-class engineering teams don’t sacrifice security for speed, but rather, choose platforms like CircleCI that deliver both.
We are constantly evaluating how we can improve both our internal security posture, and how we improve security for our customers. We invite questions and conversations on security at CircleCI and look forward to working with you to improve the security of the software ecosystem as a whole. Please email CircleCI's GRC team with any questions.
For customers interested in signing a Data Processing Addendum with CircleCI, you can sign our DPA here.
CircleCI's Privacy Policy can be viewed here.
Sub-Processors
Sub-Processors
SafeBase Maintenance
On Thursday, April 2nd, between 07:00pm-8:00pm PT/10:00pm-11:00pm ET, the CircleCI SafeBase account will be included in a routine database maintenance window. During this time, you may experience brief disruptions in service.
SafeBase assures us that they will strive to minimize any inconvenience, and appreciates your understanding and support as they continue to improve their services.
FedRAMP Secure Configuration Guide
Published in fulfillment of FedRAMP requirement SCG-CSO-RSC, CircleCI's Secure Configuration Guide (SCG) for FedRAMP Tailored LI-SaaS is now publicly available to support agency ATO inheritance documentation and onboarding on CircleCI's Trust Center. This guide provides federal agency administrators and Authorizing Officials with comprehensive guidance for securely deploying and operating CircleCI under a FedRAMP Tailored Low Impact SaaS authorization.






