VOOZH about

URL: https://www.digitalocean.com/security

⇱ Security | DigitalOcean


Security at DigitalOcean

At DigitalOcean, our customers' trust is critical to us. We know that you need a secure foundation to build on, which is why we are dedicated to product and platform security, and providing you with security best practices so both you and your own customers can stay secure.

DigitalOcean's security pillars

DigitalOcean takes a thorough approach to security, and helps customers stay secure through six main pillars.

Product security

Each DigitalOcean product has several security features to help you secure your infrastructure.

Platform security

We abstract away the complexities of security at the infrastructure layer to give you peace of mind.

Trust and privacy

Learn how we manage, store, and protect your data, and read our certification reports.

Infrastructure security

DigitalOcean follows the most up-to-date infrastructure security controls.

Shared responsibility model

Read these product guides to learn how we can work together to secure your DigitalOcean instance.

Security Best Practices

Discover these security best practice guides designed to empower you in securing your products.

Now Available: Cloud Security Posture Management (CSPM)

Run agentless posture scans across supported DigitalOcean resources to find misconfigurations, prioritize what matters, and implement guided remediation. Includes Security Advisor summaries to help you fix issues faster.

Learn more

Product security features

Certification reports

SOC 2 and SOC 3

DigitalOcean is AICPA SOC 2 Type II and SOC 3 Type II certified. By achieving compliance with this globally recognized information security controls framework, DigitalOcean has demonstrated a commitment to protecting sensitive customer and company information.

Cloud Security Alliance (CSA)

DigitalOcean has achieved Cloud Security Alliance (CSA) STAR Level 1 which addresses fundamental security principles across 16 domains to help cloud customers assess the overall security risk of a cloud service.

GDPR

DigitalOcean is GDPR compliant and we show it through our actions. DigitalOcean uses clear and concise language in our Data Processing Agreement (DPA) and Privacy Policy and backs that up with transparent security and privacy controls.

Global Cross-Border Privacy Rules (CBPR)

The CBPR is a global privacy standard that an organization can certify and attest to the controls it has in place to protect the privacy of personal data. DigitalOcean aims to become one of the first cloud providers to certify to the rigid CBPR requirements.

Identifying bugs and vulnerabilities

DigitalOcean partners with Intigriti for our bug bounty program.

Learn more about Identifying bugs and vulnerabilities

Get started for free

Sign up and get $200 in credit for your first 60 days with DigitalOcean.*

*This promotional offer applies to new accounts only.

© 2026 DigitalOcean, LLC.Sitemap.