GlobMaps is actively pursuing SOC 2 Type II certification. This page details our readiness journey, current controls, and expected timeline for our customers and partners.
AICPA SOC 2 criteria covered in our audit scope
Protection against unauthorized access, disclosure, and damage to systems.
System availability for operation and use as committed.
Information designated as confidential is protected.
System processing is complete, valid, accurate, and timely.
Personal information is collected, used, retained, and disclosed appropriately.
Gap analysis against SOC 2 TSC. Identified and remediated control deficiencies.
Security headers, Redis rate limiting, DSAR flow, consent logging, retention policies deployed.
Auditor (independent CPA firm) begins 6-month observation of controls in operation.
Continuous evidence gathering: access logs, incident records, vendor reviews, penetration test.
Auditor reviews evidence, interviews personnel, tests control effectiveness.
Report issued. Available to customers and partners under NDA upon request.
Key controls implemented and operating as of May 2026
Once issued (November 2026), the SOC 2 Type II report will be available to customers and prospects under NDA. Enterprise tier customers receive automatic access.
Request Report Access