
Compliance grid
- HIPAAVendor-stated
Vendor displays a HIPAA badge on its trust centre (claim; BAA availability not yet captured)
as of 18 Sep 20261 source
SOC 2Vendor-statedVendor states SOC 2 on its trust centre
as of 18 Sep 20261 source- GDPRVendor-stated
Vendor states GDPR on its trust centre
as of 18 Sep 20261 source
PCI DSSVerifiedListed on the Visa Global Registry as PCI DSS validated through 2026-10-31
as of 17 Sep 20261 source · SecurityMetrics, Inc.- CSA STARVerified
STAR Level 1 self-assessment (CAIQ)
as of 17 Sep 20261 source
SOC 1Vendor-statedVendor states SOC 1 on its trust centre
as of 18 Sep 20261 source
EU-US Data Privacy FrameworkExpiredInactive
as of 17 Sep 20261 source- CCPA / CPRAVendor-stated
Vendor states CCPA on its trust centre
as of 18 Sep 20261 source
TX-RAMPVendor-statedVendor states TX-RAMP on its trust centre
as of 18 Sep 20261 source
No public evidence yet for FedRAMP, ISO 27001, Cyber Essentials, ISO 27701, ISO 42001. This does not mean the vendor lacks them; it means nothing public was found at the last check.
Official framework marks identify the scheme each row is about; the CertReports state chip beside each mark is our assessment of the public evidence. How states are decided.