
Navan
Compliance evidence
Streamline your corporate travel management and expense processes in one
navan.comLast verified 19 Sep 2026
Compliance grid
SOC 2Vendor-statedVendor states SOC 2 Type 2 on its trust centre
as of 19 Sep 20261 source- GDPRVendor-stated
Vendor states GDPR on its trust centre
as of 19 Sep 20261 source
PCI DSSVendor-statedVendor states PCI DSS on its trust centre
as of 19 Sep 20261 source
ISO/IEC 27001Vendor-statedVendor states ISO/IEC 27001 on its trust centre
as of 19 Sep 20261 source- CSA STARVendor-stated
Vendor states CSA STAR on its trust centre
as of 19 Sep 20261 source
SOC 1Vendor-statedVendor states SOC 1 Type 2 on its trust centre
as of 19 Sep 20261 source
No public evidence yet for HIPAA, FedRAMP, Cyber Essentials, ISO 27701, ISO 42001. This does not mean the vendor lacks them; it means nothing public was found at the last check.
Official framework marks identify the scheme each row is about; the CertReports state chip beside each mark is our assessment of the public evidence. How states are decided.