Compliance frameworks, security audits, and quality certifications this company maintains.
Booking.com maintains ISO 27001 certification for its information security management system, protecting the personal and payment data of 590+ million registered users and 28 million property partner listings on its platform.
Booking.com holds PCI DSS Level 1 certification, the highest tier of the Payment Card Industry Data Security Standard, governing secure processing of hundreds of millions of payment card transactions annually across its global booking platform.
Booking.com complies with GDPR as a major data controller of EU traveler personal data, implementing data subject rights workflows, privacy-by-design principles, and standard contractual clauses for cross-border data transfers from its Amsterdam headquarters.
Booking.com holds SOC 2 Type II attestation for security, availability, and confidentiality, providing hotel and property partners with assurance that customer booking data stored on the platform is governed by rigorous independent controls.
Booking.com complies with the California Consumer Privacy Act, maintaining opt-out mechanisms, data deletion workflows, and annual privacy disclosures for California-resident users who represent a significant share of its North American customer base.
Booking.com complies with the EU Digital Services Act as a designated Very Large Online Platform (VLOP), meeting transparency reporting, algorithmic accountability, and illegal content removal requirements enforced by the European Commission.
Booking.com is subject to EU Digital Markets Act obligations as a gatekeeper platform in the online travel agency sector, implementing interoperability, fairness, and self-preferencing restrictions required by the European Commission.
Booking.com holds ISO 9001 quality management certification covering its platform engineering, customer service operations, and property partner onboarding processes that serve customers across 220+ countries.
Booking.com platform meets WCAG 2.1 AA accessibility standards, ensuring its accommodation search, booking flow, and account management interfaces are accessible to travelers with disabilities across web and mobile applications.
Booking.com holds CSA STAR Level 2 cloud security certification, providing transparency on the security practices governing its AWS and multi-cloud infrastructure that processes over 1.5 million room nights booked daily.