TwilioCompliance, certifications and attestations Certifications held, by family 7 held
Status Public
Founded 2008 Sep 24, 2026
Last captured
SOC reports SOC 1 Not found SOC 2 Type II SOC 3 Not found ISO standards ISO/IEC 27001 Held ISO/IEC 27017 Held ISO/IEC 27018 Held ISO/IEC 27701 Not found AI governance ISO/IEC 42001 Not found CSA STAR for AI Not found US government FedRAMP Not found DoD Impact Level Not found GovRAMP (StateRAMP) Not found CJIS Not found Health HIPAA (BAA) Held HITRUST Not found Privacy Data Privacy Framework Held EU Cloud Code of Conduct Not found Regional IRAP Not found BSI C5 Not found ISMAP Not found TISAX Not found From public trust centers and registries on the date shown. Confirm scope with the vendor. Logos via logo.dev; trademarks belong to their owners.
Evidence Every source, what it says and when it was read.
Held · Type II Vendor compliance page...to every product across Twilio, Segment, and SendGrid. HIPAA Eligible products & services SOC 2, Type II SOC 2, Type I PCI DSS Level 1 PCI DSS Level 4 Binding Corporate Rules ISO/IEC 27017:2015 certified ISO/IEC... Captured Sep 24, 2026Open source Suggest a correctionHeld Vendor compliance page...Level 4 Binding Corporate Rules ISO/IEC 27017:2015 certified ISO/IEC 27018:2019 certified ISO/IEC 27001:2013 certified Request Twilio security documentation Request Segment security documentation Security blog Articles... Captured Sep 24, 2026Open source Suggest a correctionHeld Vendor compliance page...services SOC 2, Type II SOC 2, Type I PCI DSS Level 1 PCI DSS Level 4 Binding Corporate Rules ISO/IEC 27017:2015 certified ISO/IEC 27018:2019 certified ISO/IEC 27001:2013 certified Request Twilio security documentation... Captured Sep 24, 2026Open source Suggest a correctionHeld Vendor compliance page...Type I PCI DSS Level 1 PCI DSS Level 4 Binding Corporate Rules ISO/IEC 27017:2015 certified ISO/IEC 27018:2019 certified ISO/IEC 27001:2013 certified Request Twilio security documentation Request Segment security documentation... Captured Sep 24, 2026Open source Suggest a correctionHeld Vendor compliance page...the credentials listed do not apply to every product across Twilio, Segment, and SendGrid. HIPAA Eligible products & services SOC 2, Type II SOC 2, Type I PCI DSS Level 1 PCI DSS Level 4 Binding Corporate Rules... Captured Sep 24, 2026Open source Suggest a correctionHeld Vendor compliance page...Twilio, Segment, and SendGrid. HIPAA Eligible products & services SOC 2, Type II SOC 2, Type I PCI DSS Level 1 PCI DSS Level 4 Binding Corporate Rules ISO/IEC 27017:2015 certified ISO/IEC 27018:2019 certified ISO/IEC... Captured Sep 24, 2026Open source Suggest a correctionHeld Data Privacy Framework ListEU-US, UK extension, Swiss-US; non-HR data. Twilio Inc.
EU-US status: Active; certified since 2016-10-25; recertification due 2027-04-20; verification: Self-Assessment Captured Sep 23, 2026Since Oct 25, 2016 Renewal due Apr 20, 2027 Open source Suggest a correction