Tradeshift · Trust Center

Tradeshift Trust Center

Trust center

Tradeshift maintains a public trust center documenting SOC 1 Type II, SOC 2 Type II, ISAE 3402 Type II, PCI DSS Level 1, and ISO 27001 compliance.

E-InvoicingAccounts PayableAP AutomationProcure-to-PaySupply ChainB2B CommerceInvoicingUBLPEPPOLe-invoicing-complianceSupplier Networkbusiness-documentsFintechMCPagent-native
Trust center: https://tradeshift.com/security/

Certifications & Compliance

SOC 1 Type IISOC 2 Type IIISAE 3402 Type IIPCI DSS Level 1ISO 27001

Source

Trust Center

Raw ↑
generated: '2026-08-02'
method: searched
probe: true
source: https://tradeshift.com/security/
url: https://tradeshift.com/security/
kind: security-and-compliance-whitepaper
note: >-
  Tradeshift does not run a hosted trust-center portal (trust.tradeshift.com does not resolve). It publishes a
  security and compliance whitepaper page instead, which names its third-party audit standards explicitly. Audit
  reports are described as available to customers on request, not published.
certifications:
  - SOC 1 Type II
  - SOC 2 Type II
  - ISAE 3402 Type II
  - PCI DSS Level 1
  - ISO 27001
quote: >-
  "Our rigorous and ever-expanding compliance program includes 3rd party audits that enable us to provide our
  customers reports validating the security of the platform with standards such as SOC 1 Type II, SOC 2 Type II,
  ISAE 3402 Type II, Payment Card Industry (PCI-DSS) Level 1 and ISO 27001."
topics_covered:
  - Governance and risk assessment
  - Access control
  - Secure software development life cycle
  - Data classification and data security
  - Physical security (cloud provider certified to ISO 27001 and SOC 1/2)
  - Configuration and patch management
  - Vulnerability management and incident response
  - Monitoring and logging
  - Data backup and restore
  - Business continuity and disaster recovery
  - Awareness and training
  - Compliance management
regulatory:
  - GDPR
  - e-invoicing compliance across 69 countries
  - French e-invoicing mandate — registered PDP (Plateforme de Dématérialisation Partenaire)
probes:
  - url: https://trust.tradeshift.com/
    result: NXDOMAIN
  - url: https://tradeshift.com/trust/
    http_status: 404
  - url: https://tradeshift.com/security/
    http_status: 200
evidence:
  - source: https://tradeshift.com/security/
    keywords: [soc 1 type ii, soc 2 type ii, isae 3402 type ii, pci-dss level 1, iso 27001, gdpr]
x-evidence:
  fetched: '2026-08-02'

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/tradeshift-trust-center"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.