Security, Trust, and Reliability at Toggl

Security

  • Hosted on Google Cloud Platform and operated in a multi-tenanted platform with TLS encryption
  • SSO-login with SAML 2.0
  • Regular third-party security audits & penetration tests

Trust

  • SOC 2 Type 1 compliant and ISO 27001 certified
  • Certified data centers (ISO, PCI DSS, SSAE16)
  • Clear data ownership: you own your data, we don't sell it

Reliability

  • 99.99% uptime for reliable access
  • Regular backups with tested recovery processes
  • Performance monitoring & proactive issue detection
SOC 2 Type 1 badge

SOC 2 Type 1 compliant

ISO 27001 badge

ISO 27001 certified

GDPR badge

GDPR compliant

EU Data Act badge

EU Data Act compliant

CCPA badge

CCPA & CPRA compliant

US Privacy Laws badge

US Privacy Laws compliant

What's new

A quick snapshot of our latest improvements

November 2025

🎀New Feature

A medal that says ISO 27001 certified
Toggl is now SOC 2 Type 1 compliant

Toggl has successfully completed its SOC 2 Type 1 audit, demonstrating our commitment to the highest standards of security and reliability. Read more →

September 2025

🎀New Feature

An icon of a document with a GDPR logo
Toggl introduces our EU Data Act Addendum

Toggl introduces our EU Data Act Addendum, ensuring compliance with EU data regulations and reinforcing our commitment to data security and user rights. Read more →

March 2025

🎀New Feature

A medal that says ISO 27001 certified
Toggl obtains ISO/IEC 27001 certification

Toggl obtained the globally recognized gold standard for information security management (ISMS). Read more →

February 2025

🎀New Feature

Toggl Track 2FA authentication
Two-Factor Authentication (2FA)

Secure your personal Toggl Track account with 2FA. Head to your Profile settings to enable it, or learn more here.

December 2024

🎀New Feature

Screenshot of the new entities in audit log
Introducing the ability to log in with Passkeys

To set up your passkey, go to your account settings and click 'Enable' under the Passkey option in "Additional Login Options.". Read more →

Netconomy logo

“Because we work with very sensitive data and are hosting our data in Germany and Austria, meeting strict legal and security requirements was crucial. It is particularly important here that employee data is not transferred without a corresponding purpose.”

— C. Strasser, Information Security Officer, NETCONOMY | Team of 500+. Read the case study.

Secure. Compliant. Reliable.

Toggl keeps your data safe and your workflow uninterrupted with enterprise-grade protection

A medal with the SOC 2 badge

Toggl is Now SOC 2 Type 1 Compliant

Meeting strict criteria in security, availability, and confidentiality

An icon of a document with a GDPR logo

Toggl Introduces Our EU Data Act Addendum

Ensuring compliance with EU data regulations

An illustration of a medal with the ISO 27001 badge

Toggl is Now ISO 27001 Certified

With strict access controls, encryption, and continuous monitoring, your data stays protected

An illustration of an employee card with a key attached, and the SSO letters

Toggl SSO: A Smarter, Smoother, Safer Way In

Fewer logins, stronger security, and easier user management

Illustration of a security shield with a padlock

Toggl Security Policy

The technical and organisational measures underpinning Toggl's enterprise-grade security

Illustration of a man pointing at a legal document

Toggl Legal Terms and Policies

Our terms, policies, and commitments — clearly explained

99.9% uptime

Toggl Status Page

Keeping uptime high and downtime low (99.9% and counting)

Team photo of Netconomy

A GDPR-Compliant Solution for a 500+ Software Team

Read the case study on full team adoption, secure data handling, and meeting strict legal and security requirements

Icon of the Track company
Product
GDPR, ISO 27001, SOC 2 Type 1, and CCPA compliant