Whatfix

SprintoVerified Jun 2026

Whatfix Compliance & Certifications

SOC 2 Type IIISO 27001ISO 27017ISO 27018ISO 27701HIPAAGDPRCCPACPRACSA STAR

Frequently Asked Questions

Does Whatfix have SOC 2 Type II?

Yes. Whatfix holds SOC 2 Type II, ISO 27001, ISO 27017, ISO 27018, ISO 27701, HIPAA, GDPR, CCPA, CPRA, CSA STAR certifications. You can view their trust center at trust.whatfix.com for full security and compliance documentation.

Where can I find Whatfix's security documentation?

Whatfix publishes their trust center on Sprinto at trust.whatfix.com. It includes security policies, compliance certifications (SOC 2 Type II, ISO 27001, ISO 27017, ISO 27018, ISO 27701, HIPAA, GDPR, CCPA, CPRA, CSA STAR), and other documentation.

Does Whatfix have ISO 27001 certification?

Yes, Whatfix is ISO 27001 certified. This international standard confirms they have implemented a comprehensive information security management system (ISMS).

Is Whatfix HIPAA compliant?

Yes, Whatfix is HIPAA compliant and can support healthcare organizations that handle protected health information (PHI).