Verifiable
GDPR evidence
API for healthcare compliance
Verifiable and GDPR
CertReports found no public GDPR evidence for Verifiable as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 14 Nov 2019
- Scope
- Verifiable processes personal data in order to issue digital credentials to various recipients on behalf of organizations, to setup accounts for users to manage and share their credentials in an online wallet, as well as to provide access to data privacy tools. Data collected from individual users includes name, email, password, and additional information about credentials they have received. We also collect technical information such as a user's IP address or browser, and usage information such as pages visited, in order to improve the services provided. In addition, organizations provide data in order to issue digital credentials to their recipients who are part of their organization and with whom they have a relationship. This allows the organizations to issue, manage credentials, and enable the credentials to be accessed and stored by recipients. The personal data provided by organizations about their recipients includes the recipient's name and email. Verifiable discloses personal data to third party subprocessors and select business partners in order to optimize and perform services. These third parties include cloud service providers, email processors, customer support software, analytics platforms, and claims issuers. A full list of subprocessors is publicly available on our website.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | Verifiable: Inactive | Live pagesha256 6aa043cd97 |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is Verifiable GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags or the Compliance and GRC category) whose GDPR row is verified or vendor-stated, ranked by similarity.