SOC2C

Krisp security & compliance

An overview of Krisp's security posture — compliance, penetration testing, subprocessors, and data handling — verified on SOC2C (Listed).

SOC 2 statusSOC 2 Type II · Listed
FrameworksSOC 2 Type II, PCI DSS, HIPAA, GDPR
Penetration testNot listed
Subprocessors27 listed
HostingAWS, GCP, Azure
Trust centerView

Security questions about Krisp

Is Krisp secure?
Security isn't a single yes/no, but Krisp is SOC 2 Type II compliant and holds SOC 2 Type II, PCI DSS, HIPAA, GDPR. SOC2C verifies its compliance posture and shows how strongly each fact is proven.
Does Krisp have a bug bounty or vulnerability disclosure program?
Krisp hasn't listed a bug bounty or vulnerability disclosure program on SOC2C. Many companies accept security reports at security@krisp.ai or via a /security page (Krisp lists a security contact).
Who are Krisp's subprocessors?
Krisp lists 27 subprocessors on its trust center, including Amazon Web Services, Twilio SendGrid, Hubspot, Microsoft Azure, Zendesk. Buyers use this for fourth-party risk review.
Where does Krisp host or store data?
Krisp hosts on AWS, GCP, Azure, and handles For comprehensive information about the types of data collected by Krisp, please refer to the following links., https://krisp.ai/security-for-call-centers-enterprises/#customer-data, https://krisp.ai/security-for-ai-meeting-assistant/#customer-data. Data residency details are on its trust center.
Where is Krisp's trust center or security page?
Krisp's trust center is at https://trust.krisp.ai. Its verified SOC 2 status, frameworks, and documents are summarized on its SOC2C profile.

See Krisp's full SOC 2 profile →