Customer.io · Trust Center

Customer Io Trust Center

Trust center

Customer.io maintains a public trust center documenting SOC 2, ISO 27001, HIPAA, GDPR, and CCPA compliance.

Behavioral DataBroadcastsCampaignsCDPCustomer DataCustomer Data PlatformData IngestionEmailEvent TrackingMarketing AutomationMessagingPush NotificationsSegmentsSMSTransactional Email
Trust center: https://app.conveyor.com/profile/customer-io

Certifications & Compliance

SOC 2ISO 27001HIPAAGDPRCCPA

Source

Trust Center

Raw ↑
generated: '2026-08-13'
method: searched
probe: true
source: https://customer.io/security
url: https://app.conveyor.com/profile/customer-io
trust_center:
  platform: Conveyor
  url: https://app.conveyor.com/profile/customer-io
  http_status: 200
  checked: '2026-08-13'
  linked_from: https://customer.io/security
certifications:
- SOC 2
- ISO 27001
- HIPAA
- GDPR
- CCPA
certification_detail:
- name: SOC 2 Type II
  source: https://customer.io/security
- name: ISO 27001
  source: https://customer.io/security
  note: >-
    Named on the security page under industry-standard frameworks; the page also
    carries a dedicated "What is your ISO 27001 compliance status?" FAQ.
- name: HIPAA
  source: https://customer.io/security
  note: >-
    Listed as a Premium-plan feature on the pricing page, so it is an
    entitlement rather than a universal platform property.
- name: GDPR
  source: https://customer.io/legal/gdpr
  note: >-
    Data rectification, right to be forgotten, audit trail, and EU data
    residency through the EU-region hosts.
- name: CCPA and US state privacy laws
  source: https://customer.io/legal/ccpa
legal_artifacts:
- name: Data Processing Addendum
  url: https://customer.io/legal/dpa
- name: List of Subprocessors
  url: https://customer.io/legal/sub-processors
- name: Standard Contractual Clauses
  url: https://customer.io/legal/scc
- name: Security overview
  url: https://customer.io/legal/security
- name: Acceptable Use Policy
  url: https://customer.io/legal/acceptable-use-policy
- name: Personal Information Rights Request
  url: https://customer.io/legal/personal-information-rights-request
data_residency:
- region: US
  hosts:
  - api.customer.io
  - track.customer.io
  - cdp.customer.io
  - mcp.customer.io
- region: EU
  hosts:
  - api-eu.customer.io
  - track-eu.customer.io
  - cdp-eu.customer.io
  - mcp-eu.customer.io
account_protection:
- two-factor authentication
- single sign-on
- role-based permissions
- encryption at rest and in transit
evidence:
- source: https://customer.io/security
  http_status: 200
  keywords:
  - soc 2
  - iso 27001
  - hipaa
  - trust center
  - gdpr
- source: https://app.conveyor.com/profile/customer-io
  http_status: 200
  kind: trust center profile
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/customer-io-trust-center"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.