Semrush Security Info
Bug Bounty
Report a vulnerability
Measures of security for Semrush services
Security of data centers
Learn more about compliance at AWS
Learn more about compliance at GCP
Learn more about compliance at Equinix
Office security
HR security
Operational security
Network access control mechanisms are designed to prevent network traffic that uses unauthorized protocols from reaching the Semrush services infrastructure. The technical measures implemented differ between infrastructure providers and include Virtual Private Cloud (VPC) implementations, security group assignment, and traditional firewall rules.
Semrush has implemented a uniform password policy for its services and correspondent tools and features. All passwords must fulfil defined minimum requirements and are stored in encrypted form. Users who interact with the services via the user interface must authenticate before accessing non-public user data.
Personal data is protected by an appropriate level of security designed in order to make it difficult or impossible for unauthorized persons to access such data. Personal data is intended to be used only by specific individuals on a need-to-know basis.
Application security
Single sign-on: We have integration with SSO SAML. SSO can be enabled at any time by contacting product support.
Two-factor authentication: Our product supports two-factor authentication. It can be easily enabled to make accounts more secure.