
Navan
Security and trust center evidence
Streamline your corporate travel management and expense processes in one
Summary
Navan has 6 vendor-stated rows in the CertReports index, last verified 19 Sep 2026. The strongest row is SOC 2: Vendor states SOC 2 Type 2 on its trust centre. This page is independent of the vendor’s own trust centre: dates, sources and caveats come from CertReports captures.
Reviewer brief
Navan states it holds a SOC 2 Type II report. Navan states it holds a data processing agreement. Navan states it holds a PCI DSS attestation of compliance. Navan states it holds an ISO/IEC 27001 certificate.
- SOC 2: Vendor states SOC 2 Type 2 on its trust centre (as of 19 Sep 2026)
- GDPR: Vendor states GDPR on its trust centre (as of 19 Sep 2026)
- PCI DSS: Vendor states PCI DSS on its trust centre (as of 19 Sep 2026)
Facts only, each dated; nothing here is inferred, scored or advised.
Evidence count
0verified rows
Compliance grid
SOC 2Vendor-statedVendor states SOC 2 Type 2 on its trust centre
as of 19 Sep 20261 source- GDPRVendor-stated
Vendor states GDPR on its trust centre
as of 19 Sep 20261 source
PCI DSSVendor-statedVendor states PCI DSS on its trust centre
as of 19 Sep 20261 source
ISO/IEC 27001Vendor-statedVendor states ISO/IEC 27001 on its trust centre
as of 19 Sep 20261 source- CSA STARVendor-stated
Vendor states CSA STAR on its trust centre
as of 19 Sep 20261 source
SOC 1Vendor-statedVendor states SOC 1 Type 2 on its trust centre
as of 19 Sep 20261 source
No public evidence yet for HIPAA, FedRAMP, Cyber Essentials, ISO 27701, ISO 42001. This does not mean the vendor lacks them; it means nothing public was found at the last check.
Legal artefacts
Subprocessors (1)
- SMStatus Monitoring Amazon Web Services