Skip to content

Trust, risk & security

Data Security & Compliance

Publicly documented security certifications across major AI providers.

CitatoAggiornato 2026-07-08

Certification coverage is uneven across the six providers tracked. Anthropic, OpenAI, Google, and Microsoft each publicly document all four benchmarks checked: SOC 2 Type II, ISO 27001, a GDPR DPA, and a HIPAA BAA, per their trust pages. Mistral AI documents three of four, with no public HIPAA BAA. Perplexity Enterprise documents only two, SOC 2 Type II and HIPAA BAA, with no confirmed ISO 27001 or GDPR DPA. A missing attestation isn't proof of a gap, but it means asking the vendor rather than assuming from a trust page.

I dati

Data Security & Compliance - Publicly documented security certifications across major AI providers.
ProviderSOC 2 Type IIISO 27001GDPR DPAHIPAA BAASource
Anthropic (Claude)YesYesYesYestrust.anthropic.com
OpenAI (API & Enterprise)YesYesYesYestrust.openai.com
Google (Vertex AI / Gemini Enterprise)YesYesYesYescloud.google.com/vertex-ai/docs/general/vertexai-compliance
Microsoft (Azure OpenAI)YesYesYesYeslearn.microsoft.com/azure/compliance
Mistral AIYesYesYes-trust.mistral.ai
Perplexity (Enterprise)Yes--Yesperplexity.ai/enterprise/security

Dati citati - previsioni di mercato di terze parti o fatti documentati pubblicamente dai fornitori, provenienti dai fornitori sottostanti.

Torna al report Legal AI Index

Ricerche correlate

Tutti i grafici di ricerca