Skip to content

Trust, risk & security

Data Security & Compliance

Publicly documented security certifications across major AI providers.

مقتبسمحدث 2026-07-08

Certification coverage is uneven across the six providers tracked. Anthropic, OpenAI, Google, and Microsoft each publicly document all four benchmarks checked: SOC 2 Type II, ISO 27001, a GDPR DPA, and a HIPAA BAA, per their trust pages. Mistral AI documents three of four, with no public HIPAA BAA. Perplexity Enterprise documents only two, SOC 2 Type II and HIPAA BAA, with no confirmed ISO 27001 or GDPR DPA. A missing attestation isn't proof of a gap, but it means asking the vendor rather than assuming from a trust page.

البيانات

Data Security & Compliance - Publicly documented security certifications across major AI providers.
ProviderSOC 2 Type IIISO 27001GDPR DPAHIPAA BAASource
Anthropic (Claude)YesYesYesYestrust.anthropic.com
OpenAI (API & Enterprise)YesYesYesYestrust.openai.com
Google (Vertex AI / Gemini Enterprise)YesYesYesYescloud.google.com/vertex-ai/docs/general/vertexai-compliance
Microsoft (Azure OpenAI)YesYesYesYeslearn.microsoft.com/azure/compliance
Mistral AIYesYesYes-trust.mistral.ai
Perplexity (Enterprise)Yes--Yesperplexity.ai/enterprise/security

بيانات مقتبسة - توقعات سوق طرف ثالث أو حقائق موثقة علنًا عن البائعين، مستقاة من الموفرين الأساسيين.

العودة إلى تقرير مؤشر Legal AI

أبحاث ذات صلة

جميع الرسوم البيانية البحثية