Xano TRUST CENTER
Xano
Loading…

Certifications

Certification

ISO 27701

Overview

ISO/IEC 27701 is an international privacy management standard that extends ISO/IEC 27001 by adding requirements and guidance for managing personally identifiable information through a Privacy Information Management System (PIMS). For Xano as a SaaS platform and data processor, it means privacy responsibilities are integrated into our broader security and governance program, including controls and processes around the handling of personal data, privacy risk management, and processor obligations. For our customers as data controllers, it provides additional confidence that the service provider processing their personal data does so within a structured privacy framework that supports accountability, appropriate handling of PII, and stronger operational alignment with privacy obligations.

Scope of Xano’s Certification

Virtual Site: Planning, deployment, provisioning, and delivery of secure software applications.

How Xano Meets Compliance Criteria

Xano maintains a range of policies, procedures, and operational controls to support its compliance obligations and overall security posture. The examples below highlight key elements of our program in relation to this framework, and do not represent a complete list:

  • Data Classification Policy
  • Data Subject Request Procedure
  • Data Retention Policy
  • Data Deletion Policy & Procedure
  • Vendor Risk Management Policy
  • Risk Assessment Policy & Procedure
  • Access Control Policy
  • Data Processing Addendum (DPA) - available to all paid plans (excluding Free plan), please request a DPA by emailing us at security@xano.com

Files

100%