Compliance frameworks, security audits, and quality certifications this company maintains.
Affirm holds SOC 2 Type II certification covering its consumer lending platform, merchant integration infrastructure, and loan data management systems that process billions in annual transaction volume.
Affirm maintains PCI DSS Level 1 certification as a payment facilitator processing cardholder data across Affirm Card (Visa) transactions and merchant checkout integrations at 330,000+ retail locations.
Regulatory
CFPB BNPL Supervision
CompliantAffirm proactively complies with CFPB buy now, pay later supervisory guidelines, which classify Affirm as a credit card issuer subject to Truth in Lending Act (TILA) disclosures, dispute rights, and billing error resolution requirements.
Regulatory
ECOA / Fair Lending
CompliantAffirm's ML underwriting models comply with Equal Credit Opportunity Act (ECOA) requirements, with ongoing fair lending testing to ensure Affirm's real-time credit decisions do not result in disparate impact across protected consumer classes.
Affirm adheres to Gramm-Leach-Bliley Act requirements for financial data privacy, providing consumers with annual privacy notices and safeguarding the non-public personal financial information of 21M+ active users.
Affirm complies with the California Consumer Privacy Act, enabling California consumers to access, delete, and opt out of the sale of their personal financial data collected through Affirm's lending and card products.
Regulatory
State Lending Licenses
CertifiedAffirm holds consumer lending licenses in all 50 US states required to originate installment loans, with compliance teams monitoring state-level interest rate caps and lending disclosure requirements across all markets.
Affirm maintains ISO 27001 certification for its information security management system, providing merchant partners and institutional investors who purchase Affirm loan receivables with assurance of systematic data security controls.
Affirm holds SOC 1 Type II certification providing assurance to enterprise customers and financial institution partners that Affirm loan origination and payment processing controls relevant to customer financial reporting are operating effectively.
Affirm meets WCAG 2.1 AA accessibility standards across its consumer app and web checkout experience, ensuring that BNPL and lending products are accessible to consumers with visual auditory and motor disabilities.