Protect your mission-critical SaaS data now. Get Rewind, get peace of mind. Explore backups for ecommerce, development, accounting & more with Rewind.
Summary from the company’s website.
Publicly advertised compliance posture
As observed on September 8, 2026 on the organization’s public trust center.
-
CCPA
Publicly advertised on the organization’s trust center.
-
CSA STAR
Publicly advertised on the organization’s trust center.
-
GDPR
Public claim of alignment with the EU General Data Protection Regulation.
-
HIPAA
Public claim of compliance with US health-data privacy and security rules. HIPAA has no certification; compliance is self-attested.
-
ISO 27001
International standard for an information security management system, certified by accredited bodies.
-
SOC 2
Independent CPA audit of controls for security, availability, and confidentiality.
-
SOC 3
Public summary of a SOC 2 audit, intended for general distribution.
Compliance timeline
-
September 8, 2026
Posture last observed by Trust Index
Subprocessors
Third parties Rewind discloses on its trust center. Linked entries have their own profile in the Trust Index.
33% chain trust: 2 of 6 disclosed subprocessors are themselves in the Trust Index.
- Amazon Web Services Infrastructure provider, including hosting services, storage, and support
- Honeybadger Monitoring and error reporting of platform and related services
- New Relic Monitoring and error reporting of platform and related services
- Appcues User onboarding & in-app guidance
- Pixel Union Deliver, manage, and maintain application
- Gadget Development platform
About this data
The Trust Index reports only what organizations publicly advertise. A missing framework here means no public claim was observed as of September 8, 2026; it never means an organization is non-compliant. HIPAA entries reflect a public claim of compliance; no HIPAA certification exists. Corrections are welcome and verified against public evidence. Read the full methodology.