Last updated: August 27, 2026
Configure proxy or VPN settings
If your network requires a proxy or VPN configuration, you can confirm the details with your IT department and install it on relevant devices. Once a proxy or VPN configuration is installed on a mobile device, the Mitti mobile app would use the device's configuration to make the required connections to our servers.
If you have HTTP proxies or VPNs, the configuration must support HTTP/2 for Mitti to function normally. This doesn't apply to TCP proxies or VPNs.
Some proxies may support HTTP/2 on the client-side but downgrades to HTTP/1.1 toward the server-side. Please make sure both sides support HTTP/2.
Android devices
For Android devices, the instructions may differ between devices, so be sure to check the relevant device's manual or support articles to configure the proxy (opens in new tab) or VPN (opens in new tab) settings.
iOS devices
For iOS devices, you can configure the proxy or VPN settings via the "Settings" app. The Mitti mobile app also accepts proxy or VPN settings that are configured via configuration profiles (opens in new tab).
Manage internet filtering
If your organization network employs an application filtering system, such as Netbox Blue, and issues custom SSL certificates for internal connections, there may be a requirement to allow Android and iOS devices to accept certificates signed by your organization.
Whilst we fully support Transport Layer Security (TLS), please note that only inspection is supported for internet filtering systems, and not the termination of connections to the Mitti mobile app.
We utilize a broad range of domains and URLs to support the web app, the mobile app, and related services.
If your organization filters network traffic through a firewall or an allowlist, add the Mitti domains and URLs alongside your existing SafetyCulture entries and don't remove the SafetyCulture entries. Both stay supported while the Mitti web and mobile apps move across, and removing a SafetyCulture entry can stop QR codes, previously shared report links, and invite links from working.
Global
The following domains and URLs apply to all hosting regions.
General
Domain | URL | Description |
|---|---|---|
auth.safetyculture.com | auth.safetyculture.com | Facilitates login and authentication for Mitti. |
.au.auth0.com | cdn.au.auth0.com safetyculture.au.auth0.com | Facilitates single sign-on and authentication for Mitti. This applies to all hosting regions. |
.mitti.com | mitti.com | Hosts the marketing website. |
.mitti.com | www.mitti.com | Hosts the marketing website. |
.mitti.com | developer.mitti.com | Hosts the developer documentation. |
.mitti.com | blog.mitti.com | Hosts the blog website. |
.mitti.com | help.mitti.com | Hosts the Mitti Help Center. |
.ctfassets.net | .ctfassets.net | Facilitates the content in the Mitti Help Center. |
.googletagmanager.com | .googletagmanager.com | Facilitates the analytics and applications across Mitti websites. |
Authentication domains stay on safetyculture.com for now. They'll move to a Mitti domain in a separate migration, communicated separately.
Mitti web app and mobile app
Domain | URL | Description |
|---|---|---|
api.mitti.com | api.mitti.com | Provides access to the Mitti web app and mobile app. This applies to all hosting regions. |
api.safetyculture.com | api.safetyculture.com | Provides access to the Mitti web app and mobile app. This applies to all hosting regions. Access is moving to api.mitti.com. This domain remains supported, with no date set for when it will be retired. Keep both allowlisted. |
api.safetyculture.io | api.safetyculture.io | Facilitates the public API for integrations. This applies to all hosting regions. |
email.mitti.com | email.mitti.com | Facilitates user invites. |
email.safetyculture.io | email.safetyculture.io | Facilitates user invites. |
cdn.mitti.com | cdn.mitti.com | Serves media and assets such as photos, videos, documents, and generated reports. |
cdn.safetyculture.com | cdn.safetyculture.com | Serves media and assets such as photos, videos, documents, and generated reports. |
.edapp.com | .edapp.com | Facilitates the Training feature on the Mitti web app and mobile app. |
.s3.amazonaws.com | .s3.amazonaws.com | Facilitates the Mitti in-app live chat functionality. |
.pubnub.com | .pubnub.com | Facilitates the Mitti in-app live chat functionality. |
.pubnub.net | .pubnub.net | Facilitates the Mitti in-app live chat functionality. |
.pubnub.io | .pubnub.io | Facilitates the Mitti in-app live chat functionality. |
.pndsn.com | .pndsn.com | Facilitates the Mitti in-app live chat functionality. |
bnc.it | bnc.it | Directs users to specific areas within the Mitti mobile app. Often used when a user shares the Mitti mobile app or a web report link. |
*.knock.app | | Facilitates the notifications from the Mitti app. |
sfty.io | sfty.io | Directs users to specific areas within the Mitti mobile app. Often used when a user receives notifications for actions, schedules, or shared inspections. |
0fhl.app.link | 0fhl.app.link | Directs users to specific areas within the Mitti mobile app. Often used when a user receives notifications for actions, schedules, or shared inspections. |
.iad-06.braze.com | sdk.iad-06.braze.com | Facilitates in-app prompts, email communications, and push notifications |
.appboycdn.com | .appboycdn.com | Facilitates in-app prompts, email communications, and push notifications |
.app-measurement.com | .app-measurement.com | Reports Analytics events from Firebase to Mitti. |
.intercom.io | .intercom.io | Facilitates in-app chat functionality with Mitti Support. |
.intercomcdn.com | .intercomcdn.com | Facilitates in-app chat functionality with Mitti Support. |
.intercomcdn.eu | .intercomcdn.eu | Facilitates in-app chat functionality with Mitti Support. |
.au.intercomcdn.com | .au.intercomcdn.com | Facilitates in-app chat functionality with Mitti Support. |
.eu.intercomcdn.com | .eu.intercomcdn.com | Facilitates in-app chat functionality with Mitti Support. |
.intercomusercontent.com | .intercomusercontent.com | Facilitates in-app chat functionality with Mitti Support. |
.intercom-messenger.com | .intercom-messenger.com | Facilitates in-app chat functionality with Mitti Support. |
.intercomassets.com | .intercomassets.com | Facilitates in-app chat functionality with Mitti Support. |
.intercomassets.eu | .intercomassets.eu | Facilitates in-app chat functionality with Mitti Support. |
.au.intercomassets.com | .au.intercomassets.com | Facilitates in-app chat functionality with Mitti Support. |
.intercom-attachments.com | .intercom-attachments.com | Facilitates in-app chat functionality with Mitti Support. |
.intercom-attachments.eu | .intercom-attachments.eu | Facilitates in-app chat functionality with Mitti Support. |
.au.intercom-attachments.com | .au.intercom-attachments.com | Facilitates in-app chat functionality with Mitti Support. |
intercom.help | intercom.help | Facilitates in-app chat functionality with Mitti Support. |
Mitti mobile app (Android and iOS)
Domain | URL | Description |
|---|---|---|
.appsflyer.com | .appsflyer.com | Provides a software development kit that allows mobile app use, installation, and download tracking. |
.branch.io | api.branch.io | Allows app installation via a tracked app deep link. |
.amplitude.com | api.amplitude.com | Provides product analytics. |
.googleapis.com | www.googleapis.com | Provides product analytics. |
Mitti mobile app (Android)
Domain | URL | Description |
|---|---|---|
.googleapis.com | maps.googleapis.com | Provides access to Google Maps when using location services. |
Mitti mobile app (iOS)
Domain | URL | Description |
|---|---|---|
.apple.com | .apple.com | Provides access to Apple Maps when using location services. |
Mitti web app
Domain | URL | Description |
|---|---|---|
.fontawesome.com | .fontawesome.com | Facilitates text fonts for the Mitti web app. |
.gstatic.com | fonts.gstatic.com | Facilitates external CDN for Google Fonts and Google Maps. |
.gstatic.com | maps.gstatic.com | Facilitates external CDN for Google Fonts and Google Maps. |
.gstatic.com | csi.gstatic.com | Provides anonymized statistics used by Mitti to measure the effectiveness of Mitti online marketing. Sent to Google, LinkedIn, and Capterra. |
.google-analytics.com | www.google-analytics.com | Provides anonymized statistics used by Mitti to measure the effectiveness of Mitti online marketing. Sent to Google, LinkedIn, and Capterra. |
.capterra.com | ct.capterra.com | Provides anonymized statistics used by Mitti to measure the effectiveness of Mitti online marketing. Sent to Google, LinkedIn, and Capterra. |
.ads.linkedin.com | dc.ads.linkedin.com | Provides anonymized statistics used by Mitti to measure the effectiveness of Mitti online marketing. Sent to Google, LinkedIn, and Capterra. |
.licdn.com | snap.licdn.com | Provides anonymized statistics used by Mitti to measure the effectiveness of Mitti online marketing. Sent to Google, LinkedIn, and Capterra. |
.doubleclick.net | stats.g.doubleclick.net | Provides anonymized statistics used by Mitti to measure the effectiveness of Mitti online marketing. Sent to Google, LinkedIn, and Capterra. |
.jsdelivr.net | cdn.jsdelivr.net | Facilitates external CDN for JavaScript files required by the Mitti web app. |
.statuspage.io | .statuspage.io | Facilitates service status reporting. |
.hotjar.com | insights.hotjar.com | Provides product analytics. |
.segment.com | cdn.segment.com | Provides product analytics. |
.segment.io | api.segment.io | Provides product analytics. |
.appcues.com | my.appcues.com | Facilitates in-app prompts and walkthroughs. |
.appcues.com | vulpix.appcues.com | Facilitates in-app prompts and walkthroughs. |
.appcues.com | fast.appcues.com | Facilitates in-app prompts and walkthroughs. |
.newrelic.com | js-agent.newrelic.com | Facilitates performance and error troubleshooting. |
.nr-data.net | bam.nr-data.net | Facilitates performance and error troubleshooting. |
.wistia.net | .wistia.net | Hosts in-app video tutorials. |
.youtube.com | .youtube.com | Hosts in-app video tutorials. |
.zuora.com | .zuora.com | Facilitates billing communications. |
.stripe.com | .stripe.com | Facilitates billing communications. |
.paypal.com | .paypal.com | Facilitates billing communications. |
Region-specific
The following domains and URLs are hosting-region-specific.
US region
Domain | URL | Description |
|---|---|---|
.mitti.com | sync.mitti.com | Hosts the mobile app API gateway. |
.safetyculture.com | sync.safetyculture.com | Hosts the mobile app API gateway. |
.mitti.com | app.mitti.com | Hosts the web app. |
.safetyculture.com | app.safetyculture.com | Hosts the web app. |
Australian region
Domain | URL | Description |
|---|---|---|
.au.mitti.com | sync.au.mitti.com | Hosts the mobile app API gateway. |
.au.safetyculture.com | sync.au.safetyculture.com | Hosts the mobile app API gateway. |
.au.mitti.com | app.au.mitti.com | Hosts the web app. |
.au.safetyculture.com | app.au.safetyculture.com | Hosts the web app. |
.mitti.com | app.mitti.com | Hosts the web app. |
.safetyculture.com | app.safetyculture.com | Hosts the web app. |
EU (Ireland) region
Domain | URL | Description |
|---|---|---|
.eu.mitti.com | sync.eu.mitti.com | Hosts the mobile app API gateway. |
.eu.safetyculture.com | sync.eu.safetyculture.com | Hosts the mobile app API gateway. |
.eu.mitti.com | app.eu.mitti.com | Hosts the web app. |
.eu.safetyculture.com | app.eu.safetyculture.com | Hosts the web app. |
.mitti.com | app.mitti.com | Hosts the web app. |
.safetyculture.com | app.safetyculture.com | Hosts the web app. |
Test your network connection
To check whether your network allows traffic to Mitti, open https://app.mitti.com/reachability-test (opens in new tab) in a browser on the network you want to test. You can run this test at any time, whether or not your organization has transitioned yet.
If the response includes "ok":true, your network is reaching Mitti. If the page doesn't load, traffic to mitti.com isn't getting through from that network. Review and add the domains you need to your firewall.
Restrict IP addresses used by Mitti
If your organization has integrations set up with Mitti either via the public API or webhooks, you may want to restrict requests from the IP addresses listed in this section.
Please note that the IP addresses are hosting-region-specific.
Public API
The following IP addresses are static and only apply to the Mitti public API, not the web app, the mobile app, or webhooks.
Add "notification@safetyculture.io" and "notification@mitti.com" to your allowlist so your team members can receive notification emails from Mitti.
Global
Internet Protocol | IP address |
|---|---|
IPv4 | 162.159.133.11 |
IPv4 | 162.159.134.11 |
IPv4 | 162.159.128.35 |
IPv4 | 162.159.138.34 |
IPv6 | 2606:4700:7::a29f:850b |
IPv6 | 2606:4700:7::a29f:860b |
IPv6 | 2606:4700:7::a29f:8023 |
IPv6 | 2606:4700:7::a29f:8a22 |
Australian region
The global IP addresses must also be added to your allowlist in addition to the following ones.
Internet Protocol | IP address |
|---|---|
IPv4 | 162.159.129.33 |
IPv4 | 162.159.130.33 |
IPv6 | 2606:4700:7::a29f:8121 |
IPv6 | 2606:4700:7::a29f:8221 |
EU (Ireland) region
The global IP addresses must also be added to your allowlist in addition to the following ones.
Internet Protocol | IP address |
|---|---|
IPv4 | 162.159.130.34 |
IPv4 | 162.159.133.34 |
IPv6 | 2606:4700:7::a29f:8222 |
IPv6 | 2606:4700:7::a29f:8522 |
Webhooks
The following IP addresses are static and only apply to Mitti webhooks, not the web app, the mobile app, or the public API.
U.S. region
Internet Protocol | IP address |
|---|---|
IPv4 | 52.3.44.223 |
IPv4 | 18.235.34.216 |
IPv4 | 18.214.29.125 |
Australian region
Internet Protocol | IP address |
|---|---|
IPv4 | 13.236.158.12 |
IPv4 | 54.79.0.30 |
IPv4 | 13.237.201.42 |
EU (Ireland) region
Internet Protocol | IP address |
|---|---|
IPv4 | 63.32.51.103 |
IPv4 | 63.33.73.145 |
IPv4 | 63.33.112.98 |
Adding network requirements to allowlist is only required for Ethernet and Wi-Fi gateways, not cellular gateways.
Hostnames
Gateways require the following hostnames to be added to your allowlist:
us-east-prod-mydev-hub.azure-devices.net
eu-west-prod-mydev-hub.azure-devices.net
au-east-prod-mydev-hub.azure-devices.net
jp-east-prod-mydev-hub.azure-devices.net
in-south-prod-mydev-hub.azure-devices.net
prod-dps.azure-devices-provisioning.net
global.azure-devices-provisioning.net
TCP ports
Gateways require open communication on TCP ports 8883 and 443.
NTP connections
Gateways make NTP connections to synchronize their clocks so that sensor readings are uploaded in the correct order.
Please ensure traffic to the following domain and URLs are allowed:
Domain | URL |
|---|---|
.pool.ntp.org | 0.openwrt.pool.ntp.org 1.openwrt.pool.ntp.org 2.openwrt.pool.ntp.org 3.openwrt.pool.ntp.org |
Changelog
Date | Detail |
|---|---|
August 28, 2026 | Merged the duplicate.au.auth0.com entries under the Global table and removed the duplicate copies from the Australian region table. Moved api.safetyculture.io into the global Mitti web app and mobile app table. Removed unused regional URLs sync.safetyculture.ioapp.safetyculture.io Removed the following domains and URLs: dn.polyfill.io Added app.mitti.com and app.safetyculture.com to Australian and EU regions. Added guidance on keeping both SafetyCulture and Mitti domains allowlisted, and a self-test for network connectivity. |
August 19, 2026 | Removed unused.io domain references. Removed deprecated regional API URLs (api.au.mitti.com, api.eu.mitti.com). Removed app-v2, reports, and flags Mitti domains that aren't in use. Removed chargify.com (superseded by zuora.com). Removed cdn.eu.auth0.com and safetyculture.eu.auth0.com (not used; none of our Auth0 tenants are in the EU region). Added notification@mitti.com to the notification allowlist alongside notification@safetyculture.io. Removed.digicert.com and.letsencrypt.org. |
August 11, 2026 | Renamed SafetyCulture domain references to Mitti equivalents. SafetyCulture domains remain supported alongside the new Mitti domains. |
June 10, 2026 | Added global domain and URL: cdn.safetyculture.com |
October 13, 2025 | Added global domains and URLs: |
September 26, 2025 | Removed region-specific URLs: |
September 15, 2025 | Added new global domains: |
September 15, 2025 | Removed global domains: .kustomerapp.com Removed global URLs: |
May 22, 2023 | Added a new global domain: .edapp.com Removed a global URL: support.safetyculture.com |
May 8, 2023 | Added new global domains: .ctfassets.net.googletagmanager.com |
November 21, 2022 | Renamed "iAuditor" references to "SafetyCulture". |
October 24, 2022 | Updated developer.safetyculture.io to developer.safetyculture.com. |
October 6, 2021 | Added support for restricting IP addresses when using SafetyCulture webhooks. See the "Webhooks" section. |
October 6, 2021 | Added a new global domain: chargify.com |
June 23, 2021 | Removed global domains: |
May 4, 2021 | Added new global domains: |
April 14, 2021 | Added a new global domain: auth.safetyculture.com |
April 8, 2021 | Add new global domains: |
April 8, 2021 | Added support for restricting IP addresses when using the SafetyCulture public API. See the "Public API" section. |
Need more help?
Was this page helpful?