Skip to main content
OP

OpenCode

SOC 2 evidence

The open source AI coding agent

SOC 2 mark, CertReports state No public evidenceNo public evidence

OpenCode and SOC 2

CertReports found no public SOC 2 evidence for OpenCode as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.

Evidence

No evidence records for SOC 2. CertReports re-checks registries daily to weekly and vendor pages every 30 to 90 days.

What SOC 2 means, and what it does not

SOC 2 reports are restricted-use and are never "certifications". A Type II report covers a period; freshness is the period end plus a bridge letter of at most three months. "SOC 2 ready" and "in progress" are not reports. No public SOC 2 registry exists; the strongest registry-grade signal is a CSA STAR Level 2 attestation, then a public SOC 3.

Read the SOC 2 guide and browse all vendors with evidence

Questions buyers ask

Is OpenCode SOC 2 certified?

No organisation is "SOC 2 certified": SOC 2 is an attestation report issued by a CPA firm, not a certification. CertReports has no public evidence of a OpenCode SOC 2 report as of unknown date.

How do I get the OpenCode SOC 2 report?

SOC 2 reports are restricted-use documents shared under NDA. Request it through the OpenCode trust centre or security page; CertReports links to it and never hosts the report.

How does CertReports verify this?

Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.

Alternatives with SOC 2 evidence

Similar vendors (shared product tags or the Developer tools category) whose SOC 2 row is verified or vendor-stated, ranked by similarity.

No Developer tools vendor has SOC 2 evidence in the index yet.