
Company News
We are proud to announce that Quiltt has successfully achieved SOC 2 Type 2 compliance for our Unified API for Open Banking. This significant milestone reflects our unwavering commitment to maintaining the highest standards of security for our customers and their data.
SOC 2 compliance is widely recognized as a gold standard for organizations, particularly those handling sensitive customer data. By achieving this certification, we demonstrate that our controls and processes meet the rigorous Trust Services Criteria established by the American Institute of Certified Public Accountants (AICPA) for security.
This certification verifies that Quiltt has implemented comprehensive controls to:
Through the rigorous auditing conducted by Insight Assurance, we've confirmed our adherence to the stringent requirements of the SOC 2 framework. The examination period covered November 1, 2024, to January 31, 2025, during which our systems, policies, and procedures were thoroughly evaluated against the Trust Services Criteria for Security.
The independent assessment verified that our control environment, risk assessment processes, information and communication systems, control activities, and monitoring practices all align with industry best practices.
At Quiltt, security isn't just a checkbox—it's a core element of our business. We understand that as a Unified API for Open Banking, we're entrusted with facilitating access to sensitive financial data. This responsibility drives our continuous investment in robust security measures.
Our control environment includes:
Achieving SOC 2 Type 2 compliance represents not the end but a milestone in our ongoing security journey. We remain committed to continually enhancing our security posture and maintaining compliance with evolving security standards.
We extend our sincere appreciation to Insight Assurance for their thorough evaluation and validation of our compliance efforts. Their expertise and impartial assessment have been instrumental in verifying our adherence to the SOC 2 framework.
We thank our customers for their trust and partnership as we continue to provide secure, reliable open banking solutions that empower innovation while protecting sensitive financial data.
Yes. Quiltt has achieved SOC 2 Type 2 compliance for our Unified API for Open Banking. Read the announcement here. Our full compliance documentation and security policies are available at trust.quiltt.io.
You can also view our Privacy Policy, Terms of Service, and Terms and Conditions on our website.
Quiltt encrypts data in transit with TLS and data at rest with AES-256. Every connection between your application, Quiltt, and downstream providers travels over encrypted channels, so account and transaction data is never exposed in plaintext during transfer or storage.
Visit trust.quiltt.io to request the SOC 2 report and supporting security documentation. Quiltt shares these materials with builders and procurement teams under a standard review process.