Overview
Instacart maintains dedicated Security, GRC, and Privacy programs to ensure the confidentiality, integrity, and availability of our customers' data and privacy. We invest significant resources to safeguard against potential threats while building scalable and robust processes.
This page outlines the high-level details for several of the frameworks, regulations, and certifications that apply to our company as well as specific resources for our Marketplace product offering.
Compliance
Documents
Product Security
Data Security
App Security
Legal
Access Control
Infrastructure
Endpoint Security
Network Security
Corporate Security
Security Grades
Trust Center Updates
Instacart is undergoing our annual SOC 2 Type 2 audit for 2022. Upon completion, the report will be available on our Trust Portal. Stay tuned in the coming months!
The ongoing conflict in Ukraine and the resulting economic sanctions against Russia have increased concerns of retaliatory cybersecurity attacks against US entities. CISA (Cybersecurity & Infrastructure Security Agency) has recently announced a Shield Up, a general call-to-action for all US entities to increase their security posture and report any anomalous events. Instacart security team is on an elevated monitoring posture and will continue to monitor the evolving situation closely and reassess the risk and our strategy.
-Instacart Security Team
"Log4j" is a widely used software library for logging error messages in Java applications. Beginning December 10th, several major vulnerabilities were discovered in the library, which has prompted immediate responses by Instacart's Security Team.
At this time, we have no indication that these vulnerabilities have adversely impacted our platforms. We have applied mitigations and are patching any peripheral components that may depend on log4j up to the latest available version (2.17). We will continue to monitor our bug bounty program, network traffic, and technology assets for any evidence of compromise or malicious activity.
We will continue providing updates as they become available; please don't hesitate to reach out if you have any questions.
-Instacart Security Team