{"@context":"https://certreports.com/llms.txt","vendor":{"slug":"accesso","name":"Accesso","domain":"accesso.com","category":"Developer tools","one_liner":"accesso provides revenue-driving virtual queuing technology and innovative point-of-sale and ticketing software to top attractions around","trust_center_url":"https://trust.accesso.com/","security_page_url":null,"url":"https://certreports.com/vendors/accesso/security","last_verified_at":"2026-09-18T00:00:00.000Z","claimed":false,"verified_profile":false},"attestations":[{"framework":"gdpr","framework_name":"GDPR","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states a data processing agreement on its trust centre (Drata) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states GDPR on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/accesso/gdpr","evidence":[{"source_type":"trust_center","source_name":"Accesso trust centre (Drata)","url":"https://trust.accesso.com/","fetched_at":"2026-09-18 22:43:15.40008+00","content_hash":"d8392f2fb711ce00d1f6a48ef9f57538e2bbab0893562d07e414ad31dbb51182","wayback_url":null,"quote":"GDPR","confidence":1}]},{"framework":"pci-dss","framework_name":"PCI DSS","state":"verified_registry","state_label":"Verified","sentence":"Listed in the Visa Global Registry of Service Providers as of 17 Sep 2026.","kind":"attestation","status_text":"Listed on the Visa Global Registry as PCI DSS validated through 2026-10-31","issued_at":"2011-01-24","expires_at":"2026-10-31","period_start":null,"period_end":null,"auditor":"International Business Machines Corporation","impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"visa_grsp","url":"https://certreports.com/vendors/accesso/pci-dss","evidence":[{"source_type":"registry","source_name":"Visa Global Registry of Service Providers","url":"https://www.visa.com/splisting/","fetched_at":"2026-09-17 15:59:48.366348+00","content_hash":"f867dc58493ed1e65d844c4996bef5cd88c64d24ec134b7b659ef373366be4bc","wayback_url":null,"quote":"VisionOne Inc dba accesso ShoWare: PCI DSS, assessor International Business Machines Corporation, valid through 2026-10-31","confidence":1}]},{"framework":"soc-1","framework_name":"SOC 1","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states a SOC 1 Type II report on its trust centre (Drata) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states SOC 1 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/accesso/security","evidence":[{"source_type":"trust_center","source_name":"Accesso trust centre (Drata)","url":"https://trust.accesso.com/","fetched_at":"2026-09-18 22:43:15.40008+00","content_hash":"d8392f2fb711ce00d1f6a48ef9f57538e2bbab0893562d07e414ad31dbb51182","wayback_url":null,"quote":"SOC 1","confidence":1}]},{"framework":"dpf","framework_name":"EU-US Data Privacy Framework","state":"verified_registry","state_label":"Verified","sentence":"Listed in the Data Privacy Framework list as of 17 Sep 2026.","kind":"listing","status_text":"Active: UK Extension Certification, EU-US Certification, SW-US Certification","issued_at":"2016-10-13","expires_at":"2027-05-15","period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"dpf","url":"https://certreports.com/vendors/accesso/security","evidence":[{"source_type":"registry","source_name":"Data Privacy Framework list","url":"https://www.dataprivacyframework.gov/participant/4605","fetched_at":"2026-09-17 15:48:34.734174+00","content_hash":"c3ebc737dc04c9db4958e69774bc37e28b95b5d3be9a2b2c30025d9bc9e42e87","wayback_url":null,"quote":"Accesso: Active: UK Extension Certification, EU-US Certification, SW-US Certification","confidence":1}]},{"framework":"ccpa","framework_name":"CCPA / CPRA","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an CCPA / CPRA privacy notice on its trust centre (Drata) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states CCPA on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/accesso/security","evidence":[{"source_type":"trust_center","source_name":"Accesso trust centre (Drata)","url":"https://trust.accesso.com/","fetched_at":"2026-09-18 22:43:15.40008+00","content_hash":"d8392f2fb711ce00d1f6a48ef9f57538e2bbab0893562d07e414ad31dbb51182","wayback_url":null,"quote":"CCPA","confidence":1}]}],"brief":{"summary":"As of 17 Sep 2026, Accesso is listed in the Visa Global Registry as PCI DSS validated, with that listing valid through 31 Oct 2026 and the validation originally issued 24 Jan 2011, audited by International Business Machines Corporation. As of 17 Sep 2026, Accesso is listed in the EU-US Data Privacy Framework registry as active, covering the UK Extension Certification, EU-US Certification, and SW-US Certification, originally issued 13 Oct 2016 and valid through 15 May 2027. As of 17 Sep 2026, no public evidence found for SOC 2 for Accesso. As of 17 Sep 2026, no public evidence found for HIPAA or a BAA offering for Accesso. As of 17 Sep 2026, no subprocessor evidence rows were found for Accesso, and no ISO or other framework evidence was supplied beyond PCI DSS and the EU-US Data Privacy Framework.","bullets":["PCI DSS: listed in Visa Global Registry as validated, valid through 31 Oct 2026 (as of 17 Sep 2026; auditor: International Business Machines Corporation).","EU-US Data Privacy Framework: listed in DPF registry as active (UK Extension, EU-US, SW-US Certifications), valid through 15 May 2027 (as of 17 Sep 2026).","SOC 2, HIPAA/BAA: no public evidence found as of 17 Sep 2026."],"model":"claude-sonnet-5","generated_at":"2026-09-17 18:53:20.370511+00"},"legal_docs":[],"subprocessors":[],"disclaimer":"CertReports indexes public evidence. A missing framework means no public evidence was found at the last check, not that the vendor is non-compliant. SOC 2 is a report, not a certification; HIPAA has no certification.","generated_at":"2026-09-20T00:15:58.028Z"}