SOC 2 company profile

Notion SOC 2 status and provider evidence

Review Notion’s public SOC 2 statement, report type, evidence source, and freshness.

SOC 2 statusself attested
Report typeType II
Providers found0
Last checked2026-08-29
Providers

Notion’s SOC 2 stack

No provider is named on the current source.

We will update this page if the company publishes more detail.

Primary compliance evidence

Notion public statement

enterprise-grade protection. Explore our certifications, security controls, policies, and subprocessors to understand how Notion safeguards your data. * Annual third-party audits: SOC 2 Type II, ISO 27001/17/18/701, HIPAA, BSI C5. * Annual third-party penetration testing. * Bug bounty program through [HackerOne](https://hackerone.com/notion). * 99.9% uptime SLA ([notion-status.com](https://www.notion-status.com/)). * [Privacy policy](https://www.not

Classification: self attested · checked 2026-08-29
Open source ↗
SOC 1SOC 2SOC 3Type IType IIAudit readinessTrust centersVendor riskSecurity evidenceProcurement
What SOC 2 Provider Does Notion Use? | SOC2Market