Beta
Compliance · SOC2

SOC2 certified LLM providers

Every major LLM provider with SOC2 Type 1 or Type 2 certification. Audit dates, trust center links, models available.

Providers7
CoverageType 1 + Type 2
UpdatedQuarterly
What this page is
SOC2 certification is the enterprise table-stakes for LLM procurement. This page lists every major provider with a SOC2 audit, the certification type, last audit date, and trust center link. For the strongest enterprise posture, combine SOC2 with zero data retention, EU residency, and a signed DPA.
OpenAI
SOC2 Type 2
Audit · 2025
Models
GPT-5 · GPT-5 mini · GPT-4o · o-series
Scope
Covers API, Enterprise ChatGPT. SOC2 Type 2 report on request.
Anthropic
SOC2 Type 2
Audit · 2025
Models
Claude Opus · Claude Sonnet · Claude Haiku
Scope
Covers Claude API and Console.
Microsoft Azure (incl. Azure OpenAI)
SOC2 Type 1+2
Audit · 2025
Models
GPT-5 · GPT-5 mini · GPT-4o
Scope
Full enterprise compliance suite. ISO 27001 and HIPAA also available.
AWS Bedrock
SOC2 Type 2
Audit · 2025
Models
Claude · Llama 3.3 · Mistral
Scope
AWS-wide compliance applies to Bedrock.
Google Vertex AI
SOC2 Type 2
Audit · 2025
Scope
Google Cloud-wide SOC2 covers Vertex.
Together AI
SOC2 Type 2
Audit · 2025
Models
Llama 3.3 · Qwen3 · DeepSeek · Mistral
Scope
Open-source model hosting with enterprise compliance.
Fireworks AI
SOC2 Type 2
Audit · 2025
Models
Llama 3.3 · Qwen3 · Mixtral
Scope
HIPAA also available for enterprise.
SOC2 is a security audit framework (Security, Availability, Processing Integrity, Confidentiality, Privacy). Enterprise buyers typically require SOC2 Type 2 from any vendor processing sensitive data. Without it, procurement blocks the deal.