{"@context":"https://certreports.com/llms.txt","vendor":{"slug":"opentext","name":"OpenText","domain":"opentext.com","category":"Legal tech","one_liner":"OpenText™ Core Legal Hold is a simple, powerful cloud-based litigation hold notification software that helps law departments automate","trust_center_url":null,"security_page_url":null,"url":"https://certreports.com/vendors/opentext/security","last_verified_at":"2026-09-19T00:00:00.000Z","claimed":false,"verified_profile":false},"attestations":[{"framework":"fedramp","framework_name":"FedRAMP","state":"verified_registry","state_label":"Verified","sentence":"Listed in the FedRAMP Marketplace as of 19 Sep 2026.","kind":"authorization","status_text":"FedRAMP Authorized","issued_at":"2015-02-04","expires_at":null,"period_start":null,"period_end":null,"auditor":"Lunarline, Inc.","impact_level":"Moderate","as_of":"2026-09-19","under_review":false,"source":"fedramp","url":"https://certreports.com/vendors/opentext/fedramp","evidence":[{"source_type":"registry","source_name":"FedRAMP Marketplace","url":"https://www.fedramp.gov/marketplace/products/F1301101857","fetched_at":"2026-09-19 08:30:01.700532+00","content_hash":"b2bb3e031fda16f1f3201a5640ae64a639a15e4997f9d1ca43ef13a2942600e6","wayback_url":null,"quote":"OpenText - OpenText™ Core Application Security (Fortify On Demand): FedRAMP Authorized","confidence":1},{"source_type":"registry","source_name":"FedRAMP Marketplace","url":"https://www.fedramp.gov/marketplace/products/F1301101857","fetched_at":"2026-09-18 22:35:17.44827+00","content_hash":"db2d03fa40cba0e5287b9cc7361e71b7c30c7ca9d51efb7b540477105fb30c7b","wayback_url":null,"quote":"OpenText - OpenText™ Core Application Security (Fortify On Demand): FedRAMP Authorized","confidence":1},{"source_type":"registry","source_name":"FedRAMP Marketplace","url":"https://www.fedramp.gov/marketplace/products/F1301101857","fetched_at":"2026-09-17 15:44:39.301965+00","content_hash":"395e7ad35dd25d1c547414140161c47ec22827b7ffae3bdbbd5256c38a3b940f","wayback_url":null,"quote":"OpenText - OpenText™ Core Application Security (Fortify On Demand): FedRAMP Authorized","confidence":1}]},{"framework":"csa-star","framework_name":"CSA STAR","state":"verified_registry","state_label":"Verified","sentence":"Listed in the CSA STAR registry as of 17 Sep 2026.","kind":"self_assessment","status_text":"STAR Level 1 self-assessment (CAIQ)","issued_at":"2024-12-17","expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"csa_star","url":"https://certreports.com/vendors/opentext/csa-star","evidence":[{"source_type":"registry","source_name":"CSA STAR registry","url":"https://cloudsecurityalliance.org/star/registry/opentext","fetched_at":"2026-09-17 15:44:42.254747+00","content_hash":"e7f124247f5399c92ba048620a83c0b6cca1f9a2f97419f32566e462a3b1bda7","wayback_url":null,"quote":"opentext: STAR Level 1 self-assessment (CAIQ)","confidence":1}]},{"framework":"dpf","framework_name":"EU-US Data Privacy Framework","state":"expired","state_label":"Expired","sentence":"Certificate expiry unknown date passed; no renewal found as of 17 Sep 2026.","kind":"listing","status_text":"Inactive","issued_at":"2018-05-30","expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"dpf","url":"https://certreports.com/vendors/opentext/security","evidence":[{"source_type":"registry","source_name":"Data Privacy Framework list","url":"https://www.dataprivacyframework.gov/participant/1896","fetched_at":"2026-09-17 15:47:16.075279+00","content_hash":"da40191d1c45f31cfa6cfaaa33e1d1960a6d4941e05b2b3daec8cd829c99621c","wayback_url":null,"quote":"OpenText: Inactive","confidence":1}]}],"brief":{"summary":"OpenText is listed in the FedRAMP registry as Authorized, as of 19 Sep 2026. OpenText's FedRAMP authorization was originally issued 4 Feb 2015, with assessment work performed by Lunarline, Inc., as of 19 Sep 2026. OpenText is listed in the CSA STAR registry with a Level 1 self-assessment (CAIQ) issued 17 Dec 2024, as of 17 Sep 2026. OpenText's EU-US Data Privacy Framework registry listing is marked inactive, originally issued 30 May 2018, as of 17 Sep 2026. No public evidence was found for SOC 2, ISO/IEC 27001, HIPAA, GDPR, or PCI DSS for OpenText, as of 19 Sep 2026.","bullets":["FedRAMP: Authorized, originally issued 4 Feb 2015, assessor Lunarline, Inc. (as of 19 Sep 2026)","CSA STAR: Level 1 self-assessment (CAIQ) issued 17 Dec 2024 (as of 17 Sep 2026)","EU-US DPF: registry listing inactive since original issue 30 May 2018 (as of 17 Sep 2026); no public evidence found for SOC 2, ISO/IEC 27001, HIPAA, or GDPR"],"model":"claude-sonnet-5 (subscription)","generated_at":"2026-09-19 12:12:54.086679+00"},"legal_docs":[],"subprocessors":[],"disclaimer":"CertReports indexes public evidence. A missing framework means no public evidence was found at the last check, not that the vendor is non-compliant. SOC 2 is a report, not a certification; HIPAA has no certification.","generated_at":"2026-09-20T05:27:22.268Z"}