SOC 2 and ISO 27001: where we are
We want to be straight with you about G8KEPR's own certification status, because "compliant" gets used loosely in this market.
What we provide today
G8KEPR ships gap-analysis tooling and a self-attested control status for SOC 2 and ISO 27001. That means you can see how the platform's controls map to each framework's requirements and where the gaps are — useful both for evaluating G8KEPR and for building your own program on top of it.
To be clear: we are not claiming a completed SOC 2 report or an ISO 27001 certificate today. A SOC 2 Type II observation window is in progress (H2 2026). If you need our current attestation letter or report status for vendor review, ask your account team — we'll give you the honest, current answer.
What this means for your audit
You can still use G8KEPR's control mapping and tamper-evident evidence in your own SOC 2 or ISO audit — the platform helps you demonstrate access control, monitoring, and audit-trail integrity for the systems it protects. What it can't do is stand in for your organization's own attestation.
Getting the latest status
Because this changes over time, the dashboard's Compliance area and your account team always carry the current status. Don't rely on a cached number in a slide deck — ask for the up-to-date position when it matters for a deal.