We record the certification each vendor claims on its own pages and nothing more. A published claim is not a verified certificate, and an absent claim is not evidence a vendor lacks one. Always ask for the certificate itself.
“Our products are covered by a SOC 2 Type 2 report, validated by an independent third-party auditor for security and confidentiality.”trust.abridge.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Amazon Connect”aws.amazon.com
“without first entering into an AWS business associate agreement”aws.amazon.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Anthropic has achieved accredited certification under the new ISO/IEC 42001:2023 standard for our AI management system”www.anthropic.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“We have adopted the Australian Privacy Principles (APPs) contained in the Privacy Act 1988 (Cth)”automedsystems.com.au
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Webex is ISO/IEC 27001:2013 certified.”help.webex.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“today announced that it has completed its SOC 2 Type II audit, performed by KirkpatrickPrice.”www.cognigy.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Corti ensures that its security meets or exceeds market and regulatory requirements, including compliance with several strict frameworks.”corti.ai
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Business Associate Agreements (BAAs) are available to eligible customers.”www.coviu.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Stay secure with ISO 27001 and SOC 2 certification and GDPR and HIPAA compliant.”curiousthing.io
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Built with security at its core, the platform includes SOC 2 Type II compliance, HIPAA options, and strict guardrails for sensitive actions like refunds.”decagon.ai
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“88 Certifications”www.five9.com
“As a Business Associate, Five9 has designed and implemented appropriate administrative, physical, and technical safeguards for protected health information.”www.five9.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“IRAP Protected”www.genesys.com
“compliance with standards like ISO 27001, SOC 2, and GDPR”help.genesys.cloud
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“ISO/IEC 27001 | ISO/IEC 27017 | ISO/IEC 27018 | ISO/IEC 27701 | ISO/IEC 42001 | PCI 3DS Core Security Standard | PCI DSS | PCI PIN Security | SOC 1 | SOC 2 | SOC 3”cloud.google.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Healthengine earned ISO 27001 Certification for Information Security Management Systems in October 2022.”privacy.healthengine.com.au
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Our credentials include ISO 27001, ISO 42001, and SOC2 compliance, and we meet regional regulatory requirements including HIPAA, GDPR, PIPEDA, and APP.”support.heidihealth.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“SOC 2 Type II accreditation”practices.hotdoc.com.au
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“ISO/IEC 27001:2022 certified — Certificate number 1446-I-1, issued 24 April 2026, expires 23 April 2029. Audited by Global Compliance Certification Pty Ltd (GCC)”www.i-scribe.com.au
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“HIPAA-compliant and secure with robust data protection”intellitekhealth.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“This Privacy Policy takes into account the requirements of the Privacy Act 1988 (Cth) and the Australian Privacy Principles, as well as the New Zealand Privacy Act 2020 and the Information Privacy Principles.”lyngo.notion.site
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Aligned with APP, HIPAA, and GDPR.”www.lyrebirdhealth.com
“Lyrebird Health is ISO 27001 Certified Clinical AI Platform”www.lyrebirdhealth.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“ISO 27001 Certified”medowhealth.ai
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“undergo audits conducted by accredited independent auditors for the Microsoft ISO/IEC 27001 certification and the HITRUST Common Security Framework (CSF) certification”learn.microsoft.com
“In April 2018, the ACSC announced the certification of Azure and Office 365 at the PROTECTED classification.”learn.microsoft.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Microsoft Azure supports compliance efforts related to more than 65 national, regional, and industry-specific requirements governing the collection and use of individuals' data”learn.microsoft.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Nabla follows HIPAA, GDPR, SOC2, ISO27001 and NIST Cybersecurity standards for security and privacy.”trust.nabla.com
“HIPAA and GDPR Compliant. Certified for ISO 27001 and SOC 2 Type II.”nabla.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Our products are also ISO 27001, 27017, 27018, and 27701 certified.”trust.openai.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Compliant with Australian Privacy Principles (APP 1-13)”www.patientnotes.ai
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“We are certified for ISO/IEC 27001, the international standard for information security management systems (ISMS).”docs.poly.ai
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Sierra is committed to maintaining the highest compliance standards for our customers, including SOC 2, HIPAA, GDPR, PCI, FedRAMP High, CCPA, CSA STAR, ISO 27001, and ISO 42001.”sierra.ai
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“We use multi-factor authentication, advanced threat detection systems, and maintain alignment with ISO 27001 compliance standards.”www.sophiie.ai
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Our platform not only boasts a robust security posture, but is also infinitely scalable, SOC2 Type 2 certified, and HIPAA compliant to support the largest organizations in the industry.”www.suki.ai
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“ISO 13485 · UKCA Class IIa Medical Device · NHS DTAC compliant”tortus.ai
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Australian Privacy Principles, HIPAA standards, SOC 2, PCI, and ISO 27001: certified. We meet the highest security standards globally.”voicestack.com
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
“Voxworks also aligns its security practices with ISO 27001, the international standard for information security management systems.”docs.voxworks.ai
Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.
We could not find this on the vendor's public pages as at the check date. This is not a statement that the vendor lacks the capability or has not disclosed it elsewhere.
Are we missing something, or has this changed? Vendors and their representatives can submit a correction, and we note each change and credit the source. We review every correction request and update the entry when the source supports it.
Submit a correction