Documents
Security Update
Security Update: Axios Library Compromise
Following reports of a supply chain attack affecting specific versions of the Axios library (v1.14.1 and v0.30.4), our security team conducted a thorough review of our environment.
Sisense is NOT impacted.
While Axios packages are used within our platform, the compromised versions are not present in any of our production, managed cloud, or customer-facing environments. We have confirmed no exposure to this vulnerability.
We will continue to monitor the situation and provide updates as needed.
Investigating Potential Service Issues
Resolved - This incident has been resolved.
Nov 18, 11:33 PST
Monitoring - A fix has been implemented and we are monitoring the results.
Nov 18, 10:01 PST
Investigating - We are aware of the ongoing widespread disruption affecting the Cloudflare Global Network. We are actively monitoring this situation to assess any potential impact on our services. At this time, we have not detected any major service degradation or significant impact on our platform, however customer that use own domain through CloudFlare service might experience issues with access and 500 errors. We will continue to monitor the Cloudflare incident closely and provide updates as the situation evolves.
Nov 18, 05:48 PST
NPM Package Compromise (chalk, debug, and related libraries)
Security Update: npm Package Compromise
Sisense has conducted a comprehensive investigation and confirmed that we are not impacted by the recently disclosed npm package compromise involving chalk, debug, and related dependencies.
Actions Taken
- Assessed our environments and scanned all relevant images and builds using our internal tooling.
- Verified that compromised versions were not included in any customer-facing deployments or services.
- Reinforced monitoring to ensure ongoing protection and visibility.
Ongoing Monitoring
We continue to monitor the situation closely and will apply additional targeted measures if required, based on emerging industry intelligence.
Salesloft Drift Security Incident
Salesloft Drift Security Incident
Sisense has conducted a comprehensive investigation and confirmed that we are not impacted by the recent Salesloft Drift security incident.
We have proactively:
- Assessed our attack surface
- Reinforced security controls across our products, servers, and services
- Evaluated all critical service providers to confirm they are unaffected
We continue to monitor the evolving situation and will implement additional targeted response measures if necessary, based on industry guidance and intelligence.
Exciting Security & Compliance Update – Our 2025 Certifications Are Here!
At Sisense, we know that trust is the foundation of every successful partnership. That’s why we make security, privacy, and compliance a top priority—not just a checkbox.
We’re pleased to announce that our 2025 SOC 2 Type II report, HIPAA report, and updated ISO 27001 & ISO 27701 certificates are now complete and available for review.
These milestones aren’t just badges—they’re independent validations from trusted third-party auditors that our controls, policies, and processes meet (and exceed) the highest industry standards for security and data protection.
What this means for you:
- Confidence that your data is handled with the utmost care and integrity.
- Assurance that Sisense meets rigorous compliance frameworks trusted worldwide.
- Peace of mind knowing that partnering with Sisense means partnering with a security-first organization.
These reports and certificates are now available for you to view and download here in our Trust Center.


