Compliance

Compliance & certifications

Our current certifications and frameworks, plus the standards we are actively working towards — explained in plain business language.

Built on SOC 2 Type II Certified Infrastructure
Built on ISO 27001 Certified Infrastructure
GDPR Compliant
Secure Stripe Payments

Strivonex is built on infrastructure independently certified to SOC 2 Type II and ISO 27001 standards. This means the underlying cloud infrastructure follows internationally recognised security standards — Strivonex itself is not separately certified.

Current

GDPR
EU General Data Protection Regulation
Live
UK GDPR
UK data protection law & DPA 2018
Live
PCI DSS (via Stripe)
Payment card data handled by Stripe, a PCI-DSS Level 1 provider
Live

Underlying Infrastructure Certifications

SOC 2 Type II
Security, availability & confidentiality controls
Live
ISO 27001
Information security management
Live

On our roadmap

Cyber Essentials
UK government-backed cyber security baseline
In Progress
ISO 42001
AI management system standard
Planned

What this means for your business

  • Your data is handled on infrastructure certified to internationally recognised security standards
  • Payments are processed by a PCI-DSS Level 1 provider (Stripe)
  • We meet EU GDPR and UK GDPR obligations for data protection
  • AI governance (ISO 42001) is on our roadmap alongside our existing responsible AI principles

This dashboard reflects our compliance roadmap and is updated as certifications are achieved. Status meanings: Live — currently in place · In Progress — actively working towards · Planned — committed to on our roadmap.

FAQ

Compliance questions, answered

Strivonex is built on infrastructure independently certified to SOC 2 Type II standards. The underlying cloud infrastructure — not Strivonex itself — holds the certification. This means the infrastructure follows internationally recognised security, availability and confidentiality practices.

Strivonex is built on infrastructure independently certified to ISO 27001 standards. The underlying cloud infrastructure holds the certification, confirming it follows the international standard for information security management.

All payment card data is handled by Stripe, a PCI-DSS Level 1 certified provider. Strivonex never sees, transmits or stores full card details, so card data stays entirely within Stripe’s PCI-compliant environment.

We are working towards ISO 42001, the AI management system standard, as part of our responsible AI commitment. Our AI principles — human oversight, privacy-first design and transparency — are already in place across every product.

We use cookies to run our website (Necessary), understand how it's used (Analytics), and improve our advertising (Marketing). You can accept, reject, or manage your preferences at any time.

Live Demo Available Click the orb to experience the AI Basket Builder