Security
Learn how Fundraise Up secures your organization’s fundraising data.
At Fundraise Up, we prioritize the security of our users' accounts and supporters' information. All data is encrypted using the latest industry standard encryption technology and all payment processing is PCI compliant.
Fundraise Up also follows strict anti-fraud measures to protect your fundraising campaigns from fraudulent activity.
In addition, Fundraise Up is compliant with GDPR and other data protection laws, ensuring that all user data is handled responsibly and securely.
Our Dashboard security settings are designed to enhance the protection of your account through advanced features such as Single sign-on (SSO) and Two-factor authentication (2FA).
Compliances
Fundraise Up is compliant with the following regulatory standards.
Global | ISO27001, SOC 2 Type 2, PCI DSS Level 1 4.0, WCAG 2.1 AA |
---|---|
US and Canada | CCPA, CRA, PIPEDA |
Europe | GDPR |
Personally identifiable information (PII)
Learn how Fundraise Up secures your organization’s fundraising data by reading the PII FAQ.
SSL requirements
Fundraise Up requires a valid SSL certificate to be installed on your web server, and your website must be served using HTTPS. If a valid SSL certificate cannot be detected, it will not be possible to process donations using our Checkout modal.
Single sign-on (SSO)
Single sign-on simplifies the login process by allowing users to access multiple platforms with a single set of credentials. This not only increases convenience and reduces password fatigue, but also improves security by centralizing account control.
Fundraise Up supports SSO through SAML 2.0, ensuring secure data exchange between your Identity Provider (IdP) and our platform. Learn more →
Two-factor authentication (2FA)
Two-factor authentication (2FA) adds an extra layer of security to your Fundraise Up account, helping to protect both your account and supporter data from unauthorized access.
You can enable 2FA using SMS or an authenticator app. When it’s on, you’ll need both your password and a verification code — sent to your mobile or generated by your authenticator app — to log in. Learn more →