SOC2C

Patch My PC security & compliance

An overview of Patch My PC's security posture — compliance, penetration testing, subprocessors, and data handling — verified on SOC2C (Listed).

SOC 2 statusSOC 2 Type II · Listed
FrameworksISO 27001, SOC 2 Type II, GDPR
Penetration testNot listed
Subprocessors14 listed
HostingAzure
Trust centerView

Security questions about Patch My PC

Is Patch My PC secure?
Security isn't a single yes/no, but Patch My PC is SOC 2 Type II compliant and holds ISO 27001, SOC 2 Type II, GDPR. SOC2C verifies its compliance posture and shows how strongly each fact is proven.
Does Patch My PC have a bug bounty or vulnerability disclosure program?
Patch My PC hasn't listed a bug bounty or vulnerability disclosure program on SOC2C. Many companies accept security reports at security@patchmypc.com or via a /security page (Patch My PC lists a security contact).
Who are Patch My PC's subprocessors?
Patch My PC lists 14 subprocessors on its trust center, including Microsoft, Salesforce, CloudFlare, HubSpot, SendGrid. Buyers use this for fourth-party risk review.
Where does Patch My PC host or store data?
Patch My PC hosts on Azure, and handles Employee personally identifiable information, Credit card information, Personal health information. Data residency details are on its trust center.
Where is Patch My PC's trust center or security page?
Patch My PC's trust center is at https://trust.patchmypc.com. Its verified SOC 2 status, frameworks, and documents are summarized on its SOC2C profile.

See Patch My PC's full SOC 2 profile →