Resources · Trust Center

Compliance, certifications, and data practices in one place.

OpenCentric is SOC 2 Type II certified, GDPR-ready, and HIPAA-aligned. Every certification, audit report, and policy document is listed here. Enterprise customers can request full reports under NDA.

Certifications & audits

Current compliance posture.

SOC 2 Type IICurrent
Jan 2025 – Dec 2025 · Schellman & Co.
Full report available under NDA.
Request
GDPRCompliant
Ongoing · Self-attested + DPA
DPA available on request.
Request
HIPAAAligned
Ongoing · Internal + BAA available
BAA available on request.
Request
PCI DSS SAQ-ACurrent
Annual · Stripe-managed
Card data never touches our servers.
Request
Penetration testQ1 2026
Annual · Coalfire
Executive summary under NDA.
Request
Policies

Legal documents.