We are committed to providing an open, secure, efficient, and reliable API management platform for global customers.
We prioritize security and continuously maintain compliance in our products and services to ensure that our customers can use them with confidence.

At API7.ai, we place a high value on security and compliance, as we understand that we handle our customers' most valuable assets — APIs and data.
We offer enterprise-grade privacy and security protections, which are not only reflected in our products but also in our ongoing process improvements. Additionally, we undergo third-party audits to ensure that our products and services meet your compliance requirements.

SOC2 Type II

ISO/IEC 27001:2022

HIPAA

GDPR
Policies
Reports
SOC 2 Type II Report
Penetration Test Report
Amazon Web Services
Cloud Infrastructure · US, EU
Google Cloud Platform
Cloud Infrastructure · US
Cloudflare
CDN & WAF · Global
Stripe
Payment Processing · US
Certificates
📄
ISO/IEC 27001:2022 Certificate
Policies
Reports
SOC 2 Type II Report
Latest SOC 2 Type II audit report
Penetration Test Report
Third-party penetration test results
The following third-party service providers process data on behalf of API7.ai to deliver our products and services. We regularly review and assess these providers to ensure they meet our security and compliance standards.
| Service | Purpose | Data Location |
|---|---|---|
Amazon Web Services | Cloud Infrastructure | US, EU |
Google Cloud Platform | Cloud Infrastructure | US |
Cloudflare | CDN & WAF | Global |
Stripe | Payment Processing | US |
Zendesk | Customer Support | US |
![]() Sentry | Error Monitoring | US |
Mailgun | Email Delivery | US |
Google Analytics | Website Analytics | US |
![]() Vercel | Website Hosting & Analytics | US |
CookieYes | Cookie Consent Management | US, EU |
Calendly | Meeting Scheduling | US |