Compliance & Certifications
Meeting the highest standards for data protection, privacy, and security across global regulations
Current Certifications
SOC 2 Type II
Annual audits for security, availability, and confidentiality
GDPR
Full compliance with EU data protection regulation
ISO 27001
International standard for information security management
HIPAA
Healthcare data protection safeguards in place
PCI DSS
Payment card industry data security standard
CCPA
California Consumer Privacy Act compliance
Industry-Specific Compliance
π₯ Healthcare (HIPAA)
For healthcare organizations handling Protected Health Information (PHI):
- Business Associate Agreement (BAA) available
- Administrative, physical, and technical safeguards
- Audit logging and breach notification procedures
π³ Finance (PCI DSS)
For organizations handling payment card data:
- PCI DSS Level 1 Service Provider certification
- Tokenization of payment data
- Quarterly vulnerability scans and annual penetration tests
Global Privacy Compliance
πͺπΊ European Union - GDPR
Full compliance with General Data Protection Regulation including data subject rights, DPA, and Standard Contractual Clauses for international transfers.
πΊπΈ United States - CCPA/CPRA
Compliance with California Consumer Privacy Act and California Privacy Rights Act, including opt-out rights and data deletion requests.
π§π· Brazil - LGPD
Lei Geral de ProteΓ§Γ£o de Dados compliance with data protection requirements similar to GDPR.
π¨π¦ Canada - PIPEDA
Personal Information Protection and Electronic Documents Act compliance for Canadian data.
Audits & Transparency
Third-Party Audits
- Annual SOC 2 Type II audits by independent auditors
- Quarterly penetration testing by certified security firms
- Continuous vulnerability scanning and remediation
- ISO 27001 surveillance audits
Transparency Reports
We publish annual transparency reports detailing government requests, security incidents, and compliance updates. Reports are available at sparrow.help/transparency.
Security Documentation
Enterprise customers can request our SOC 2 reports, penetration test summaries, and compliance documentation through their account manager.
Questions About Compliance?
Our compliance team is here to help with certification questions and documentation
Email: compliance@sparrow.help