Data as of Sep 5, 2026, 11:43 PM UTC
Compliance Status
HRMLESS SOC 2 Type II compliance posture, updated live from our compliance platform.
SOC 2 Type II
Trust Services Criteria (2017)
Security Measures
Total Measures
32
Implemented
30
94%
In Progress
2
Not Started
0
Implemented In Progress Not Started
Trust Services Criteria in Scope
33 controls across 9 TSC categories
Control Environment
CC1Organizational structure, governance, and accountability
Communication & Information
CC2Internal and external communication of security commitments
Risk Assessment
CC3Identification and assessment of risks to objectives
Monitoring Activities
CC4Ongoing evaluation of internal control effectiveness and deficiency communication
Control Activities
CC5Policies and procedures to mitigate risks
Logical & Physical Access
CC6Restriction and management of access to systems and data
System Operations
CC7Detection and monitoring of system anomalies and security events
Change Management
CC8Management of changes to infrastructure and software
Risk Mitigation
CC9Risk mitigation activities including vendor management