Certification
SOC 2 Type 2 is an independent attestation report issued by a CPA firm that evaluates whether a service organization’s controls relevant to the applicable Trust Services Criteria were suitably designed and operated effectively over a defined period of time. For Xano as a SaaS platform and data processor, this provides independent assurance regarding the design and operating effectiveness of controls within the scope of the examination. For customers evaluating Xano as a service provider, the SOC 2 Type 2 report can support vendor security reviews, risk assessments, and due diligence activities.
Our SOC 2 report relates to the IT Consulting Services System and the suitability and operating effectiveness of the controls described throughout the period January 1, 2025, to December 31, 2025. Additional information regarding the examination scope, system boundaries, controls, and independent auditor testing is contained within Xano’s SOC 2 Type 2 report.
Trust Services Criteria (TSC):
Xano maintains a range of policies, procedures, and operational controls to support its compliance obligations and overall security posture. The examples below highlight key elements of our program in relation to this framework, and do not represent a complete list:
Our latest SOC 2 Type 2 Report is available for request below.