Policy Listing

Source: app.qpoint.io/security/policies

Total Policies
8
Active Violations
14
Avg Compliance
91
%
Needs Attention

Data Residency — US Only

v3

Restricts data flows to US-based regions only (us-east-1, us-west-2). CloudAnalytics routing to ap-south-1.

Last Updated2026-01-08
RegulationsCCPA, CPRA

Flows Governed

4.8
k

Compliance

96
%

Violations

7
Source
Dataflow
Destination
Violation
Time
ruby.exe
PII
S
api.stripe.io
Data leaving EU
Sept 18, 12:57 PM
ruby.exe
PII
S
api.stripe.io
Data leaving EU
Sept 18, 12:57 PM
ruby.exe
PII
S
api.stripe.io
Data leaving EU
Sept 18, 12:57 PM

Internal Service Access

v1

Controls which internal services can access PII endpoints. Unknown service detected accessing /api/users.

Last Updated2025-12-15
RegulationsSOC 2

Flows Governed

1.2
k

Compliance

91
%

Violations

8
Source
Dataflow
Destination
Violation
Time
ruby.exe
PII
S
api.stripe.io
Data leaving EU
Sept 18, 12:57 PM
ruby.exe
PII
S
api.stripe.io
Data leaving EU
Sept 18, 12:57 PM
ruby.exe
PII
S
api.stripe.io
Data leaving EU
Sept 18, 12:57 PM
Compliant

Sensitive Data

v1

Flows Governed

12
k

Compliance

100
%

Violations

0

Acceptable Use

v2

Flows Governed

892

Compliance

100
%

Violations

0

PII Handling

v4

Flows Governed

456

Compliance

100
%

Violations

0

Vendor Allow List

v3

Flows Governed

3.5
k

Compliance

98
%

Violations

5

PII Access Controls

v2

Flows Governed

2.1
k

Compliance

99
%

Violations

2

Cross-Region Transfer

v1

Flows Governed

1.8
k

Compliance

99
%

Violations

1

Legacy PII Controls

v2

Flows Governed

851

Compliance

100
%

Violations

0