{"@context":"https://certreports.com/llms.txt","vendor":{"slug":"lacework","name":"Lacework","domain":"lacework.com","category":"DevOps and observability","one_liner":null,"trust_center_url":null,"security_page_url":null,"url":"https://certreports.com/vendors/lacework/security","last_verified_at":"2026-09-17T00:00:00.000Z","claimed":false,"verified_profile":false},"attestations":[{"framework":"csa-star","framework_name":"CSA STAR","state":"verified_registry","state_label":"Verified","sentence":"Listed in the CSA STAR registry as of 17 Sep 2026.","kind":"self_assessment","status_text":"STAR Level 1 self-assessment (CAIQ), Trusted Cloud Provider","issued_at":"2022-07-16","expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"csa_star","url":"https://certreports.com/vendors/lacework/csa-star","evidence":[{"source_type":"registry","source_name":"CSA STAR registry","url":"https://cloudsecurityalliance.org/star/registry/lacework","fetched_at":"2026-09-17 15:44:42.254747+00","content_hash":"e7f124247f5399c92ba048620a83c0b6cca1f9a2f97419f32566e462a3b1bda7","wayback_url":null,"quote":"lacework: STAR Level 1 self-assessment (CAIQ), Trusted Cloud Provider","confidence":1}]},{"framework":"dpf","framework_name":"EU-US Data Privacy Framework","state":"expired","state_label":"Expired","sentence":"Certificate expiry unknown date passed; no renewal found as of 17 Sep 2026.","kind":"listing","status_text":"Inactive","issued_at":"2021-10-19","expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"dpf","url":"https://certreports.com/vendors/lacework/security","evidence":[{"source_type":"registry","source_name":"Data Privacy Framework list","url":"https://www.dataprivacyframework.gov/participant/4461","fetched_at":"2026-09-17 15:48:30.514547+00","content_hash":"64cbdeeaab30aef6aa99105374fb805cf6d9ae50ae5258186eb1ebd0cefbab4a","wayback_url":null,"quote":"Lacework Inc.: Inactive","confidence":1}]}],"brief":null,"legal_docs":[],"subprocessors":[],"disclaimer":"CertReports indexes public evidence. A missing framework means no public evidence was found at the last check, not that the vendor is non-compliant. SOC 2 is a report, not a certification; HIPAA has no certification.","generated_at":"2026-09-18T23:24:10.542Z"}