Is this your company? Buyers are checking Chainguard Inc here. Claim chainguard.dev free to control the listing, earn the badge buyers trust, and see who's evaluating you.
Claim free
Chainguard Inc
Sourced from public information. Not yet verified by the company.
Chainguard Inc is SOC 2 Type II compliant. Chainguard Inc also holds ISO 27001, GDPR, and CCPA.
About
Safe Source for Open Source™ We are committed to safeguarding our customers' data through industry standards, compliance certifications, and third-party audits. ###### Reporting Security Concerns Please review the [Inbound Vulnerability Disclosure Policy](https://www.chainguard.dev/legal/inbound-vulnerability-disclosure-policy) before sending a report. We do not participate in a bug bounty program. If you find an issue in our products or sites, report it to our team using the email below.
Compliance & infrastructure
Documents
3Subprocessors
6- GGoogle Cloud Platform · Cloud service providerUnited States
- CCloudflare · Content delivery servicesUnited States
- VVercel · Data infrastructure and hosting servicesUnited States, United Kingdom, and Spain
- ZZendesk · Customer support platformUnited States
- OOkta · Identity management servicesUnited States
- FFeature-specific Subprocessors
Compliance leadership
The person who leads Chainguard Inc's SOC 2 isn't listed yet. Claim this profile to add it.
Penetration test
Unknown. Chainguard Inc's penetration test vendor isn't listed yet.
Claim this profile to add it.
Recent updates
Added CAIQ v4.0.2Jun 2025
A completed copy of the CAIQ v4.0.2 was uploaded to the compliance section.
Added Higher Education Community Vendor Assessment Toolkit (HECVAT) DocumentJun 2025
Uploaded a completed Higher Education Community Vendor Assessment Toolkit (HECVAT) document for higher education customers.
Vulnerability Disclosure PoliciesMar 2025
Links to the _Inbound Vulnerability Disclosure Policy_ were added to: * The Trust Center header section * The Resources section * The FAQ section Links to the _Outbound Vulnerability Disclosure Policy_ were added to: * The Resources section * The FAQ section
WelcomeFeb 2025
Welcome to Chainguard's Trust Center. To receive notifications for future updates, find and click the "Subscribe to Updates" button in the page header above. It looks like a little bell (🔔).
This listing is partial
7/11 details · 64%SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.
- Auditorraises trustAdd the CPA firm that issued your SOC 2 so buyers can verify who signed it.
- Report dateraises trustAdd your most recent report period so buyers see how current your SOC 2 is.
- Renewal dateAdd your renewal window so buyers know your coverage is active.
- Security controlsConfirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.
Frequently asked
Is Chainguard Inc SOC 2 compliant?
Is Chainguard Inc ISO 27001 certified?
Is Chainguard Inc GDPR compliant?
Is Chainguard Inc CCPA compliant?
Is Chainguard Inc SOC 2 Type I or Type II?
Can I use Chainguard Inc's SOC 2 for a vendor risk assessment?
Is Chainguard Inc penetration tested?
Is Chainguard Inc secure?
Does Chainguard Inc have a bug bounty or vulnerability disclosure program?
Who are Chainguard Inc's subprocessors?
Where does Chainguard Inc host or store data?
Where is Chainguard Inc's trust center or security page?
Java Compatibility Kit (JCK) Conformance
Is Chainguard SOC2 compliant?
Is Chainguard ISO 27001:2022 Compliant?
Is Chainguard CCPA compliant?
Is Chainguard GDPR compliant?
What data do you store or share?
Where do you store data?
I found a security bug. Do you have an established bug bounty program?
Want to report a potential security issue?
Business & Industrial peers that completed SOC 2

Newsworthy.ai

1099-Prep

Octopus Deploy
