Dropbox

SafeBaseSTAR L2Verified May 2026

Dropbox Compliance & Certifications

SOC 2 Type IISOC 3ISO 27001ISO 27017ISO 27018ISO 27701HIPAAPCI DSSGDPRCCPACSA STARSOX

External Registries

CSA STAR RegistryLevel 2
CAIQ · Attestation · CertificationListed Feb 2016

Frequently Asked Questions

Does Dropbox have SOC 2 Type II?

Yes. Dropbox holds SOC 2 Type II, SOC 3, ISO 27001, ISO 27017, ISO 27018, ISO 27701, HIPAA, PCI DSS, GDPR, CCPA, CSA STAR, SOX certifications. You can view their trust center at trust.dropbox.com for full security and compliance documentation.

Where can I find Dropbox's security documentation?

Dropbox publishes their trust center on SafeBase at trust.dropbox.com. It includes security policies, compliance certifications (SOC 2 Type II, SOC 3, ISO 27001, ISO 27017, ISO 27018, ISO 27701, HIPAA, PCI DSS, GDPR, CCPA, CSA STAR, SOX), and other documentation.

Does Dropbox have ISO 27001 certification?

Yes, Dropbox is ISO 27001 certified. This international standard confirms they have implemented a comprehensive information security management system (ISMS).

Is Dropbox HIPAA compliant?

Yes, Dropbox is HIPAA compliant and can support healthcare organizations that handle protected health information (PHI).