Is this your company? Buyers are checking Wishbox here. Claim duve.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.
Claim free
Wishbox
Sourced from public information. Not yet verified by the company.
Wishbox is SOC 2 Type II compliant. Wishbox also holds ISO 27001, and ISO 27701.
About
Duve is revolutionizing guest experience by offering a truly personalized guest experience suite. Duve helps hoteliers create a tailored and digital journey for each and every guest - from online check-in flows that meet the exact needs of each guest, to a web-based guest app with relevant content in the guests' native language, to personalized upsells that increase revenue potential and satisfaction of each guest. By partnering with more than 150 integration partners, across all major PMS’s, OTA’s, PSP’s, Digital Key providers and 3rd-party vendors, Duve helps transform the way guest experien
Compliance & infrastructure
Documents
3Subprocessors
7- AAmazon Web Services · Infrastructure Sub-processorsEU
- GGoogle Workspace · Infrastructure Sub-processorsUSA
- SStripe · Service Specific - Credit card payment processingEU
- TTwilio · Service Specific - Whatsapp & SMS MessagingUSA
- DDeepL · Service Specific - Translation ServicesEU
- OOpen AI · Service Specific - DuveAI Add-onUSA
- ZZendesk · Service Specific - Whatsapp MessagingEU
Compliance leadership
The person who leads Wishbox's SOC 2 isn't listed yet. Claim this profile to add it.
Penetration test
Unknown. Wishbox's penetration test vendor isn't listed yet.
Claim this profile to add it.
Recent updates
SOC 2 Type II Achieved – 17 September 2025Nov 2025
We’re proud to share that Duve has successfully achieved SOC 2 Type II compliance as of 17 September 2025, underscoring our commitment to the highest standards of data security, privacy, and reliability for our hotel partners worldwide. Independently tested and attested by PrescientSecurity, this certification confirms that Duve’s controls were designed and operated effectively over the audit period, validating the secure and trustworthy experiences we deliver at scale. Our SOC 2 Type II report is available under NDA—please contact your Duve representative to request access.
This listing is partial
7/11 details · 64%SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.
- Auditorraises trustAdd the CPA firm that issued your SOC 2 so buyers can verify who signed it.
- Report dateraises trustAdd your most recent report period so buyers see how current your SOC 2 is.
- Renewal dateAdd your renewal window so buyers know your coverage is active.
- Security controlsConfirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.
Frequently asked
Is Wishbox SOC 2 compliant?
Is Wishbox ISO 27001 certified?
Is Wishbox ISO 27701 certified?
Is Wishbox SOC 2 Type I or Type II?
Can I use Wishbox's SOC 2 for a vendor risk assessment?
Is Wishbox penetration tested?
Does Wishbox offer a Data Processing Agreement (DPA)?
Does Wishbox have an ISO 27001 certificate?
Is Wishbox secure?
Does Wishbox have a bug bounty or vulnerability disclosure program?
Who are Wishbox's subprocessors?
Where does Wishbox host or store data?
Does Wishbox offer a Data Processing Agreement (DPA)?
Where is Wishbox's trust center or security page?
Where are your servers located?
What privacy/security settings are available?
Do you support Single Sign-On (SSO)?
Do you encrypt data at rest and transit?
Travel peers that completed SOC 2
Magnatech Travel Management Solutions Inc
Aluskytechnologies

Passenger Technology Group
