SOC2C

Is this your company? Buyers are checking groq Inc here. Claim groq.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
groq Inc logo

groq Inc

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

groq Inc is SOC 2 Type II compliant. groq Inc also holds GDPR, and HIPAA.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

Groq is dedicated to protecting your data and takes information security extremely seriously. We recognize that trust must be earned and maintained, which is why we're dedicated to upholding the highest standards of security and compliance. As part of our commitment to security, we are pleased to announce that we have achieved SOC 2 Type II compliance as of mid-2024. This certification is a critical step in our security journey. We are grateful to our independent auditors, and proud to demonstrate that our security practices meet the highest industry standards.

Compliance & infrastructure

Hosting
GCP
Data handled
Customer personally identifiable informationEmployee personally identifiable informationCredit card informationPersonal health information

Documents

4

Subprocessors

21
  • S
    Stytch · Identity intermediary
    San Francisco, CA
  • G
    Google Cloud Platform · Cloud provider
    Mountain View, CA
  • S
    Stripe · Payment processing
    California, Oregon
  • O
    Oracle Netsuite · GroqCloud Accounting and Billing
    Oklahoma City, OK
  • I
    Intercom · Customer service / support
    San Francisco, CA
  • C
    CloudFlare · Cloud Connectivity
  • M
    MailChimp · Email services
  • L
    Lago · Billing management
  • A
    Anrok · Tax collection and remittance
  • H
    Hubspot · Email Marketing
  • S
    Salesforce · Sales and Marketing
  • R
    Retool · Product operations
Show all 21 subprocessors
  • T
    Tavily · Other
  • F
    FoundryLabs (e2b) · Other
  • D
    DataGrail · Customer support
  • P
    PostHog · Product and design
  • W
    Wiz · Security
  • E
    Exa · Other
  • A
    Anchor Forge · Other
  • S
    SupportNinja · Customer Support
  • P
    Persona · Identity Verification and Fraud Prevention

Compliance leadership

The person who leads groq Inc's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. groq Inc's penetration test vendor isn't listed yet.

Claim this profile to add it.

Recent updates

Subprocessor List UpdatedNov 2025

Groq recently updated our subprocessor list in November 2025.

Subprocessor List UpdatedSep 2025

Groq recently updated our subprocessor list in September 2025.

Subprocessor List UpdatedAug 2025

Groq recently updated our subprocessor list in August 2025.

Subprocessor List UpdatedMay 2025

Groq recently updated our subprocessor list in May 2025.

Subprocessor List UpdatedApr 2025

Groq recently updated our subprocessor list in March 2025.

This listing is partial

7/11 details · 64%

SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is groq Inc SOC 2 compliant?
groq Inc is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is groq Inc GDPR compliant?
According to groq Inc's public trust center, groq Inc is GDPR compliant. On SOC2C this listing is Listed.
Is groq Inc HIPAA compliant?
According to groq Inc's public trust center, groq Inc is HIPAA compliant. On SOC2C this listing is Listed.
Is groq Inc SOC 2 Type I or Type II?
groq Inc is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.
Can I use groq Inc's SOC 2 for a vendor risk assessment?
Yes. groq Inc's SOC 2 status, frameworks, auditor, and renewal timing are on SOC2C for vendor risk and security reviews. Request the underlying report through SOC2C to complete your third-party risk file.

Answers published by groq Inc

Reproduced from groq Inc's own trust center. These are the company's statements about its security practices — SOC2C has not tested or verified them, and they may have changed since we last read the page. Check the source ↗

Where can I review policies and notices?
The Groq policies and notices are available here.
Is Groq a controller or processor of customer data?
As between Groq and the customer, Groq is a processor of customer data, including inputs and outputs processed by GroqCloud’s services. Please see the data processing addendum for more information on how customer data is processed by Groq.
Who has control over customer data?
The customer remains in control of the customer data \- i.e., all input and output processed using GroqCloud’s services is in the customer’s control and a customer can store such customer data in its own engineering environment. In some instances, to troubleshoot system reliability and monitor for abuse, Groq logs errors on the platform that lead to system degradation. Customers can enable zero data retention (ZDR) on the Data Controls page in the console.
Who owns customer data (input and output)?
All inputs and outputs are customer data and as between Groq and the customer, the customer retains any ownership rights in such inputs and outputs.
How is customer data encrypted when using GroqCloud?
All customer data processed by GroqCloud is encrypted in transit using TLS 1.2+ and at rest using AES-256 GCM.