Is Mindstamp SOC 2 or ISO 27001 certified?
Short answer
No. Mindstamp does not hold a SOC 2 report or an ISO 27001 certification. Mindstamp provides a security statement on request, and Enterprise buyers can bring their security questionnaire and vendor requirements to a scoped review.
How to do it
Copy link to How to do it- Read the published legal documents: the Privacy Policy, Terms of Service, Disclaimer, and Cookie Declaration and Network Calls.
- To ask for the security statement, contact the team.
- If your company needs a questionnaire, vendor onboarding or contract terms, start with the Enterprise page and bring your requirements to the first call.
What is published
Copy link to What is published- All legal documents are listed on the legal resources page.
- The Privacy Policy explains what personal data Mindstamp collects, how it is used, your GDPR rights, and how data is transferred out of the European Union.
- The Cookie Declaration and Network Calls page covers cookies in the viewer experience.
Security facts you can use today
Copy link to Security facts you can use today- Team members sign in with an email and password, or with Google.
- Payment card details are handled by a third-party billing service.
- AI features stay off until an account owner turns them on. Actions by connected AI agents are scoped, audited and reversible.
- API tokens are scoped and can be revoked.
If your policy requires SOC 2
Copy link to If your policy requires SOC 2Some procurement policies accept a vendor security statement, a questionnaire and contract terms in place of a SOC 2 report. Ask your security team if an exception process exists, then send your requirements through the Enterprise page. The quote and contract state what Mindstamp can support.