Asana

SafeBaseSTAR L1Verified May 2026

Asana Compliance & Certifications

SOC 2 Type IISOC 2 Type ISOC 3ISO 27001ISO 27017ISO 27018ISO 27701HIPAAFedRAMPGDPRCCPACSA STARNISTTX-RAMP

External Registries

CSA STAR RegistryLevel 1
CAIQListed Aug 2022

Frequently Asked Questions

Does Asana have SOC 2 Type II?

Yes. Asana holds SOC 2 Type II, SOC 2 Type I, SOC 3, ISO 27001, ISO 27017, ISO 27018, ISO 27701, HIPAA, FedRAMP, GDPR, CCPA, CSA STAR, NIST, TX-RAMP certifications. You can view their trust center at trustcenter.asana.com for full security and compliance documentation.

Where can I find Asana's security documentation?

Asana publishes their trust center on SafeBase at trustcenter.asana.com. It includes security policies, compliance certifications (SOC 2 Type II, SOC 2 Type I, SOC 3, ISO 27001, ISO 27017, ISO 27018, ISO 27701, HIPAA, FedRAMP, GDPR, CCPA, CSA STAR, NIST, TX-RAMP), and other documentation.

Does Asana have ISO 27001 certification?

Yes, Asana is ISO 27001 certified. This international standard confirms they have implemented a comprehensive information security management system (ISMS).

Is Asana HIPAA compliant?

Yes, Asana is HIPAA compliant and can support healthcare organizations that handle protected health information (PHI).