
WSO2 and GDPR
CertReports found no public GDPR evidence for WSO2 as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 15 Feb 2019
- Expires or valid through
- 3 Dec 2026
- Scope
- WSO2 processes the personal data of its customers, partners and other visitors to our website for the purpose of providing them with services they may request ( through our contact us form, partner portal, support portal etc), to send them relevant marketing and event information and to analyze and understand how users interact with our site and services. WSO2 leads, prospects, and visitors to the websites • When a user submits a Contact Us form, WSO2 collects: o Name, job title, company, email address, phone number, area of interest, industry • When a user visits WSO2 web sites, WSO2 collects: o IP Address, Browser Type, OS Type, language, access times, and geolocation data (country, region, city), referring to website addresses. o Cookie Consent-related cookies and any tracking and performance cookies placed based on the user’s cookie consent WSO2 customers • To provision support service accounts, billing, and account management, WSO2 requires, o Name, email, phone number, job title, and Company of our customer's employees who handle those functions. • During contract signing, WSO2 collects, o Signatures and names of the authorized signatories who sign contracts WSO2 partner or reseller employees • Name of directors and shareholders of the partner, country and date of birth of the directors and shareholders if compliance screenings are required. • Contact information such as name, email address, and telephone number of the representative in touch with WSO2. The personal data is shared with third party service providers of WSO2 listed https://wso2.cachefly.net/wso2/sites/all/2023/pdf/wso2-subprocessor-list.pdf
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | WSO2 LLC: Active: EU-US Certification, UK Extension Certification, SW-US Certification | Live pagesha256 d735101b1a |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is WSO2 GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags or the Developer tools category) whose GDPR row is verified or vendor-stated, ranked by similarity.
No Developer tools vendor has GDPR evidence in the index yet.