Feature
ISO 27001
Certified information-security management system.
14 providers
213 APIs
13 declared variants
An accredited ISO/IEC 27001 certification covering the provider’s information-security management system, sometimes with 27017/27018/27701 extensions. Common procurement requirement outside the US.
14 API providers on the APIs.io network offer iso 27001. The highest-rated are Mews, Heidi Health, Elastic.io, ARGUS Enterprise, Zluri.
Providers
Ranked by API Evangelist rating — Exemplar and Strong are expanded by default.
Strong 5 Solid coverage with minor gaps
Mews
Mews is a cloud-native hospitality operating system serving 15,000+ hotels, hostels, and vacation-rental pr...
Heidi Health
Heidi Health is a Melbourne, Australia-founded AI care partner for clinicians, founded in 2019 by Dr. Tom K...
Elastic.io
Elastic IO is a cloud-based integration platform that helps businesses effortlessly connect their various a...
ARGUS Enterprise
ARGUS Enterprise is the industry-standard commercial property valuation and cash flow forecasting software ...
Zluri
Zluri is a SaaS management and operations platform that helps organizations discover, govern, and optimize ...
Developing 6 Usable, with meaningful gaps to close
Robin AI
Robin AI is a London-headquartered legal intelligence platform founded in 2019 by former Clifford Chance di...
Altruistiq
Altruistiq is a London-based climate intelligence platform for food and beverage and other FMCG enterprises...
LangWatch
LangWatch is an open-source LLM observability, evaluation, and AI agent testing platform. Built around Open...
Kontomatik
Kontomatik is a Warsaw- and Vilnius-based PSD2-licensed open banking provider delivering bank data aggregat...
Whereby
Whereby is an embeddable video API plus standalone meetings product that lets developers add browser-based,...
Humaans
Humaans is a London-headquartered modern HRIS (Human Resources Information System) for fast-growing, distri...
Thin 1 Limited public surface area
What Providers Actually Declared
This feature is a canonical term. These are the free-text strings
providers wrote in their own apis.yml that map onto it.
GDPR and ISO 27001 compliance, optional HIPAA configurationGDPR, ISO 27001, and SOC 2 certified; Privacy by Design methodologyISO 27001ISO 27001 CertifiedISO 27001 CompliantISO 27001 certified information security managementSOC 2 / ISO 27001 reports and forward-deployed engineering available under Enterprise tierSOC 2 and ISO 27001 certifiedSOC 2 and ISO 27001 certified; trust center at trust.promptfoo.devSOC 2, ISO 27001, HIPAA, and GDPR compliance postureSOC 2, ISO 27001, ISO 42001, HIPAA, GDPR, APP, PIPEDA, NHS, Cyber Essentials+, UKCA, Swiss FDPA complianceSOC 2, ISO 27001, and GDPR-aligned controls; Vanta/Drata/Secureframe automation integrationsSOC 2, ISO 27001, and PCI DSS compliant
Scroll for all 13