Compliance frameworks, security audits, and quality certifications this company maintains.
Sketch maintains SOC 2 Type II certification, providing product design teams at enterprise customers with assurance that Sketch Cloud storage and collaboration infrastructure meets rigorous security, availability, and confidentiality controls for design files and assets.
Sketch is GDPR compliant, processing EU customer data under appropriate legal bases with data processing agreements, transparent privacy controls, and data subject rights fulfillment for all Sketch for Teams and individual subscription users in Europe.
Sketch complies with the California Consumer Privacy Act, enabling California-resident Sketch users to request access to, deletion of, or opt-out of the sale of their personal information stored on the Sketch platform.
Sketch is working toward ISO 27001 certification for its information security management system to satisfy enterprise procurement requirements from large design organizations evaluating Sketch as a compliant cloud design platform.
Sketch supports SAML 2.0 single sign-on for enterprise workspace administrators, integrating with Okta, Azure AD, and Google Workspace to centralize identity management and enforce access policies for all Sketch team members.
All design files, assets, and collaboration data transmitted between the Sketch desktop app, web app, and Sketch Cloud are encrypted in transit using TLS 1.2 or higher, protecting design IP from interception.
Sketch encrypts all customer design files and cloud-stored assets at rest using AES-256 encryption, ensuring that proprietary product designs, brand assets, and design system components stored in Sketch Cloud are protected.
Sketch is improving WCAG 2.1 AA conformance across its macOS and web applications, recognizing the importance of accessibility for design professionals who use Sketch as their primary daily work tool.
Security
Apple Notarization
CertifiedThe Sketch macOS application is Apple-notarized, ensuring that every Sketch release is scanned by Apple for malicious software before distribution, providing design teams with confidence in the integrity of the application they install.
Sketch is pursuing CSA STAR Level 1 self-assessment to document its cloud security controls inventory, supporting enterprise design team procurement processes that require standardized cloud vendor security disclosure.