SOC 2 Type II
Cloudflare's SOC 2 Type II report covers security, confidentiality, and availability controls to protect customer data and is available to download from the Cloudflare dashboard.
SOC stands for the Service Organization Controls created by the American Institute of Certified Public Accounts ("AICPA"). SOC 2 Type II is a security compliance attestation; a report created by independent, third-party auditors that validate and document Cloudflare's commitment to security.
Frequently asked questions
What is SOC 2 Type II?
What is the difference between a SOC 2 Type I and SOC 2 Type II report?
How does Cloudflare's SOC 2 Type II benefit customers?
How does Cloudflare help me address compliance requirements?
Does Cloudflare have a SOC 2 Type II report?
When can customers expect Cloudflare's report?
How can customers check the controls they will be responsible for?
Do you have a bridge letter covering the period since the last covered period?
What plans are in scope for Cloudflare's SOC 2 report?
What services are in scope for Cloudflare's SOC 2 Type II?
Why are some Cloudflare services outside of the scope of the SOC 2 Type II report?
How do customers get a copy of the SOC 2 Report?
How do I access the Cloudflare dashboard?
Does Cloudflare have additional SOC reports?
Does Cloudflare have additional security and privacy certifications and reports?
Resources
Whitepaper
Aligning to NIS2 cyber security risk management obligations in the EU with Cloudflare
Whitepaper