SOC 2
- Status: roadmap.
- Controls are being mapped to the AICPA Trust Services Criteria with owners, review cadence, and evidence references.
- Certification has not been obtained.
OASIS maintains implementation evidence for security, privacy, accessibility, records, and AI-governance controls. Independent attestation status is listed below.
Important: OASIS does not claim FedRAMP authorization, SOC 2 certification, ISO/IEC 27001 certification, or a completed VPAT/ACR on this page.