Compliance frameworks, security audits, and quality certifications this company maintains.
Security & Compliance
SOC 2 Type II
CertifiedAnnual SOC 2 Type II audit covering Security, Availability, and Confidentiality for all Plaid API infrastructure and financial data handling.
Security & Compliance
ISO 27001
CertifiedInformation Security Management System certification covering Plaid engineering, data operations, and financial data processing environments.
Payment Security
PCI DSS Level 1
CertifiedPCI DSS Level 1 certification for Plaid infrastructure handling payment account credentials and financial institution authentication data.
Fair Credit Reporting Act Consumer Reporting Agency certification enabling Plaid-verified cash flow and income data to be used in regulated credit and rental decisions.
EU General Data Protection Regulation compliance for European operations covering consumer financial data processing, data subject rights, and DPAs with financial institution partners.
California Consumer Privacy Act compliance including financial data opt-out rights, consumer request portal, and third-party data sharing disclosures.
EU Payment Services Directive 2 compliance enabling Plaid European open banking APIs to access consumer bank accounts through regulated API channels across the EU.
Gramm-Leach-Bliley Act compliance governing how Plaid collects, shares, and protects consumer financial data obtained from financial institutions.
Financial Regulation
Section 1033 (CFPB)
AlignedAligned with CFPB Section 1033 open banking rule requiring financial institutions to share consumer data with authorized third parties, positioning Plaid as a compliant data access intermediary.
Web Content Accessibility Guidelines compliance for Plaid Link UI component and developer dashboard, ensuring accessible financial connectivity for users with disabilities.