For the complete experience, please enable JavaScript in your browser.

Security and Privacy

Privacy/Data

Are there ads in Workplace?

No, unlike consumer Facebook, we don’t show ads in Workplace. And information shared on Workplace belongs to the customer organization.

My organization is subject to EU data processing requirements. Can I use Workplace?

Yes. Companies across the EU use Workplace and we provide specific provisions to help them address EU data protection requirements. Most notably, Facebook is certified under the EU-US Privacy Shield Framework, which helps companies comply with EU data transfer requirements as part of their use of Workplace. More information about Facebook’s certification can be found here.

Is there a risk that that someone might share something personal from their consumer Facebook account, on their Workplace account? Or alternatively, can someone accidentally share confidential work information from their Workplace account on their personal Facebook profile?

Nothing from your Workplace account will show up within your personal Facebook feed, and vice versa. Workplace and Facebook are different products and this distinction is supported by clear design so you can easily identify whether you are in your work account or your consumer account. You don’t even need a consumer Facebook account to sign up for Workplace.

Who owns and controls the information my organization’s employees create?

The data you and your employees put into Workplace belongs to your organization and you control it. You and your administrators can modify, delete, or export it at any time via an administrative API (documentation found here).

What happens when an employee leaves a company?

Like other cloud-based enterprise products, Workplace gives you, the employer, continued access to the employee’s Workplace account.

Do you have to create a personal Facebook account when you use Workplace?

No, Workplace is not the same product from consumer Facebook. You don’t need a consumer Facebook account to sign up for Workplace and there are separate websites and apps for both.

Where are your data centers located?

We currently have data centers in Europe and the US.

Security

How does Workplace keep my information secure?

Ensuring the security of information on Facebook is at the core of how we build products and operate our company. Security is built into every Facebook product, including Workplace. From transport layer protocols to machine learning for threat detection, Facebook’s network is protected by a combination of advanced automated systems, best in class encryption standards, and dedicated security teams.

The security of our service is regularly evaluated and tested by our own internal security experts and independent third parties including full source code reviews and penetration tests. We happily share these reports and results upon request.

We also know that every enterprise needs visibility and control over services that connect to their own networks. That’s why we give you control to manage the security settings and policies for your Workplace community.

Physical access to Facebook data centers and offices is restricted to authorized individuals. We own or directly lease all of our facilities so we have end-to-end control over the grounds, the buildings, the servers, the operations, and maintenance for each center.

Do you have enterprise-grade security?

Yes. Security is built into every Facebook product, including Workplace. We have hundreds of dedicated security staff, and robust third party audited frameworks and processes that are designed with the sole purpose of keeping your data secure. Our unique position on the internet gives us visibility into the latest emerging threats, and provides us the ability to block attacks against your Workplace instance in real time. Additionally, Workplace has been designed to integrate into your company’s existing identity management and access systems, giving you full control over access to your data, using open standards that are common to most enterprise software vendors.

How does Workplace respond to government or law enforcement requests for information and data about my company or employees?

Unless legally prohibited, Facebook will direct law enforcement requests to you so you can decide whether to produce the requested information or oppose the request.

Are you SOC certified?

Yes, we are SOC 2 certified. Please refer to Ernst & Young’s independent report here.

What SLAs does Workplace provide?

Support Hours of Operation: 5 days a week/12 hours a day
Response Time: Within 48 hours or 2 business days

Where can I get more information?

Security white paper
Ernst & Young independent report