-
Trust at Bongo
Your partners represent your brand. The solution behind them needs to be secure.
Bongo makes security and compliance a priority, so you can focus on performance.
You Can Count on Bongo
Bongo is SOC 2 Type 2 certified and aligned with ISO 27001 standards, with controls validated by independent audit. We support organizations operating under FERPA, HIPAA, GDPR, and CCPA. Built for teams that can’t afford compliance risk.
Your Data Stays Yours
Your data stays protected and under your control from end to end.
AI That Works for You
Bongo uses AI to deliver coaching, scoring, and performance insights for your partners. Your data stays protected and fully under your control.
AI helps you scale your program. You stay in control.
A Product Your Security Team Will Approve
Security reviews can slow down vendor adoption. Bongo is built to make the process straightforward, with controls and documentation ready for validation.
Built on AWS
Enterprise-grade infrastructure with the scale, resilience, and compliance posture of Amazon Web Services.
Tightly Controlled Access
Role-based permissions ensure the right people have the right access.
Reviewed Before Every Release
Every update goes through a security review before it reaches your partners.
Continuous Testing
Regular penetration testing and vulnerability scans keep the product secure as it evolves.
Fits Into Your Existing Stack
Bongo integrates with your LMS and PRM, embedding partner readiness into the systems you already use. No system overhaul. Just stronger partner enablement where your team already works.
Leading LMS Platforms
Native integrations with Canvas, Blackboard, Moodle, D2L Brightspace, and more.
Partner Relationship Management
Sync partner data across your PRM to keep your ecosystem aligned.
Single Sign-On
SSO with Google and any SAML 2.0 provider. One login, no extra accounts.
Frequently Asked Questions
How does Bongo protect my data?
Your data is encrypted both when it is stored and when it is moving between systems. Every customer gets their own separate space on the platform, so your data is never mixed with another organization’s. Bongo is hosted on Amazon Web Services and your data stays in the region you choose, whether that is the US, Canada, Europe, or Australia.
How does Bongo ensure AI transparency and governance?
Instructors and program managers are in control at every step. Any AI-generated score or piece of feedback can be reviewed, adjusted, or removed by a real person at any time. Bongo also runs regular testing across a wide range of scenarios to make sure AI outputs stay accurate and consistent with every release.
Is customer data used to train any AI model?
No. Your data is never used to train any AI model, period. When a partner submits a video, only the text transcript is sent for processing. The actual video is never transmitted, no personal information is included, and that transcript is never stored or recycled for model training purposes.
Can I control what data Bongo collects and processes?
Yes. Only the minimum information needed to deliver the right experience is passed between your systems and Bongo, typically just a name and email. At any time, customers can request deletion of their data, and when an account is closed, personal data is removed from Bongo’s systems in line with our data retention policy.
What about regulations like GDPR and CCPA?
Bongo is compliant with GDPR and CCPA, and all Bongo employees complete mandatory training on these regulations. Users have the right to request deletion or export of their personal information, and those requests are fulfilled within 30 days in line with both regulation.
What parties process my data in addition to Bongo?
Bongo uses Amazon Web Services for infrastructure hosting. For AI functionality, relevant transcript data is transmitted to OpenAI via a secure, encrypted connection for real-time processing only. Enterprise agreements with these providers contractually prohibit secondary use of your data, and data is never shared beyond what is needed to complete the specific task.
What is Bongo's data retention policy?
Bongo retains customer data only for as long as it is needed or as defined by the terms of your agreement. When a customer closes their account, personal data is removed from all Bongo systems. If data cannot be immediately deleted from a third-party service, that vendor is contractually obligated to complete the deletion according to Bongo’s data processing agreements.
Does Bongo support HIPAA compliance?
Yes. Bongo adheres to HIPAA requirements and implements safeguards to protect any protected health information stored or submitted within the platform. This includes strict access controls, data retention and disposal policies, and prompt reporting of any unauthorized disclosures.
Where can I find more information about Bongo's security practices?
Bongo’s full SOC 2 Type 2 report and supporting security documentation are available upon request. Our team is ready to work through any security questionnaire or procurement review alongside you.
Let's Talk Security
Have a security question? Need documentation for your procurement process? Our team is ready to work through it with you.