> ## Knowledge Base Index
> Fetch the complete knowledge base index at: https://help.crisp.chat/sitemap.xml
> Use this file to discover available pages before exploring further.
> Pure-Markdown content can be obtained by appending a '.md' suffix to the content URLs listed in the sitemap (without the trailing slash).

# How Crisp manages security on its services

*Learn where to review Crisp security practices and the main resources related to platform security.*

Crisp takes account, workspace, infrastructure, and visitor data security seriously. The most detailed and current technical security information is maintained in Crisp's Security Practices documentation.

---

# ${color}[#0080dd](Review Crisp security practices)

For the detailed security documentation, read [Security Practices](https://docs.crisp.chat/guides/others/security-practices/) in the Crisp Developer Hub.

__The security documentation covers topics such as:__
* **Data privacy** → Crisp's approach to protecting customer and end-user data
* **Account security** → strong authentication and secure access practices
* **Infrastructure security** → safeguards around server, network, and operational access
* **Application security** → secure product design and protection against common risks
* **Responsible disclosure** → how security researchers can report issues to Crisp

||| Security details can evolve over time. Always use the official Security Practices documentation as the reference for current technical information.

---

# ${color}[#0080dd](Related security resources)

__Useful companion articles:__
* [How to enable Two Factor Authentication](https://help.crisp.chat/en/article/how-to-enable-two-factor-authentication-13jtmw6/) → add an extra login protection layer to Crisp accounts
* [Crisp Chatbox Cookie & IP policy](https://help.crisp.chat/en/article/crisp-chatbox-cookie-ip-policy-1147xor/) → understand Chatbox cookies, sessions, and IP handling
* [Crisp EU GDPR compliance status](https://help.crisp.chat/en/article/whats-crisp-eu-gdpr-compliance-status-nhv54c/) → review GDPR-related information
* [What is Crisp compliance status with SOC2](https://help.crisp.chat/en/article/what-is-crisp-compliance-status-with-soc2-1xet2vz/) → understand SOC 2-related security areas
* [What is Crisp compliance with ISO 27001](https://help.crisp.chat/en/article/what-is-crisp-compliance-with-iso-27001-10e05uc/) → understand ISO 27001-related security areas

---

# ${color}[#0080dd](Frequently Asked Questions)

*Still have questions which were not covered in this article? Here is a collection of the most frequently asked questions on this topic.*

###### ${color}[#F08820](Where should I start for a security review?)

**Start with the Security Practices documentation.** It is the best reference for technical security information, then use the related articles above for GDPR, cookies, 2FA, SOC 2, and ISO 27001 topics.

###### ${color}[#F08820](Where can I report a security issue?)

**Use Crisp's responsible disclosure guidance.** The Security Practices documentation explains how to report security concerns and which channel to use.