
Summary
clickup has 10 vendor-stated rows, and 1 expired in the CertReports index, last verified 17 Sep 2026. The strongest row is SOC 2: Vendor states SOC 2 on its trust centre. This page is independent of the vendor’s own trust centre: dates, sources and caveats come from CertReports captures.
Reviewer brief
clickup states it holds a SOC 2 Type II report. clickup states it holds a data processing agreement. clickup states it holds a PCI DSS attestation of compliance. clickup states it holds an ISO/IEC 27001 certificate. clickup previously appeared with EU-US Data Privacy Framework evidence, but the listing is no longer active and CertReports found no renewal as of 17 Sep 2026..
- SOC 2: Vendor states SOC 2 on its trust centre (as of 17 Sep 2026)
- GDPR: Vendor states GDPR on its trust centre (as of 17 Sep 2026)
- PCI DSS: Vendor states PCI DSS on its trust centre (as of 17 Sep 2026)
Facts only, each dated; nothing here is inferred, scored or advised.
Among project management vendors
0verified rows
Category median 1, across 28 indexed project management vendors. clickup has more verified rows than 43 percent of them.
productivitytask managementteam collaborationwork management
Compare with similar vendors
Pick your own comparisonCompliance grid
SOC 2Vendor-statedVendor states SOC 2 on its trust centre
as of 17 Sep 20261 source- GDPRVendor-stated
Vendor states GDPR on its trust centre
as of 17 Sep 20261 source
PCI DSSVendor-statedVendor states PCI DSS on its trust centre
as of 17 Sep 20261 source
ISO/IEC 27001Vendor-statedVendor states ISO/IEC 27001 on its trust centre
as of 17 Sep 20261 source
ISO/IEC 27701Vendor-statedVendor states ISO/IEC 27701:2019 on its trust centre
as of 17 Sep 20261 source
ISO/IEC 42001Vendor-statedVendor states ISO/IEC 42001:2023 on its trust centre
as of 17 Sep 20261 source
SOC 3Vendor-statedVendor states SOC 3 on its trust centre
as of 17 Sep 20261 source
ISO/IEC 27017Vendor-statedVendor states ISO/IEC 27017:2015 on its trust centre
as of 17 Sep 20261 source
ISO/IEC 27018Vendor-statedVendor states ISO/IEC 27018:2019 on its trust centre
as of 17 Sep 20261 source
EU-US Data Privacy FrameworkExpiredInactive
as of 17 Sep 20261 source- CCPA / CPRAVendor-stated
Vendor states CCPA on its trust centre
as of 17 Sep 20261 source
No public evidence yet for HIPAA, FedRAMP, CSA STAR, Cyber Essentials. This does not mean the vendor lacks them; it means nothing public was found at the last check.
Legal artefacts
Subprocessors (1)
- SISecurity Infrastructure Amazon Web Services
Change history
- 17 Sep 2026CCPA / CPRA evidence addedA CCPA / CPRA row entered the index with state Vendor-stated.
- 17 Sep 2026GDPR evidence addedA GDPR row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 27001 evidence addedA ISO/IEC 27001 row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 27017 evidence addedA ISO/IEC 27017 row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 27018 evidence addedA ISO/IEC 27018 row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 27701 evidence addedA ISO/IEC 27701 row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 42001 evidence addedA ISO/IEC 42001 row entered the index with state Vendor-stated.
- 17 Sep 2026PCI DSS evidence addedA PCI DSS row entered the index with state Vendor-stated.
- 17 Sep 2026SOC 2 evidence addedA SOC 2 row entered the index with state Vendor-stated.
- 17 Sep 2026SOC 3 evidence addedA SOC 3 row entered the index with state Vendor-stated.
Similar vendors with evidence
Related by product tags and the Project management category, ranked by shared tags, description similarity and overlapping evidence. Never by popularity.