SOC 2 company profile

GitHub SOC 2 status and provider evidence

Review GitHub’s public SOC 2 statement, report type, evidence source, and freshness.

SOC 2 statusself attested
Report typeNot publicly specified
Providers found0
Last checked2026-08-29
Providers

GitHub’s SOC 2 stack

No provider is named on the current source.

We will update this page if the company publishes more detail.

Primary compliance evidence

GitHub public statement

-in application security. Explore GitHub Advanced SecurityFind out how platform security strengthens your workflow. Read about platform securityGitHub’s API stays secure with ISO, SOC 2, and GDPR. Visit the Trust CenterJoin the companies that secure their code with GitHubJoin the companies that secure their code with GitHubSecurity seamlesslyintegrated into your workflowPrevent accidental secret exposure Push protection automatically blocks

Classification: self attested · checked 2026-08-29
Open source ↗
SOC 1SOC 2SOC 3Type IType IIAudit readinessTrust centersVendor riskSecurity evidenceProcurement
What SOC 2 Provider Does GitHub Use? | SOC2Market