Skip to main content
Posit Software PBC logo

Posit Software PBC

Regulatory evidence

Posit is the enterprise data science platform trusted by 52 of the Fortune

posit.coDeveloper toolsLast verified 21 Sep 2026

Posit Software PBC against third-party requirements

For each regulation, how many of the requirements it places on your vendors Posit Software PBC’s public evidence reaches. Open one for every item with its date and source.

Documents on the trust centre

What the vendor lists, typed; public items can be read now, the rest are available on request.

9 documents listed on Posit Software PBC’s trust centre

trust.posit.co
  • Cyber insurance certificate
    • Certificate of Liability Insuranceon request · seen 21 Sep 2026
  • Security questionnaire (SIG, CAIQ, HECVAT)
    • Connect Cloud HECVATon request · seen 21 Sep 2026
    • On Prem HECVATon request · seen 21 Sep 2026
    • Posit Cloud HECVATon request · seen 21 Sep 2026
    • Posit Team HECVATon request · seen 21 Sep 2026
    • Shinyapps.io HECVATon request · seen 21 Sep 2026
  • Security policy or overview
    • External Information Security Policyon request · seen 21 Sep 2026
    • Vulnerability Disclosure Policypublic · seen 21 Sep 2026
  • SOC 2 report
    • Connect Cloud SOC 2 Reporton request · seen 21 Sep 2026

What the vendor says

Answers the vendor publishes to questions buyers ask, quoted with the link to where it says so.

  • Penetration testing

    Does Posit Perform Penetration Assessments of its software?

    Posit performs yearly penetration tests of all its professional products. The pentrations are performed on a yearly basis by a 3rd party. However, Posit does not perform pentration tests of its open source software.

    as of 21 Sep 2026Source

  • Penetration testing

    How does Posit respond to penetration tests or vulnerability assessments?

    If you have received a vulnerability assessment or penetration test report for your installed instance of an Posit product and would like Posit to comment, please please submit a support ticket at https://support.posit.co and include the following information: - The full detail of each finding, without redaction. - If submitting the full report, a list of which findings require comment. - An acknowledgement that y...

    as of 21 Sep 2026Source

All articles

This maps third-party obligations to the vendor evidence that may support them. It is not legal advice and never a statement that a vendor or its customers comply; confirm scope and sufficiency with your counsel or auditor. “No public evidence” means nothing public was found at the last check. Citations link to the official text.