What SOC 2 (Privacy Criteria) requires
The SOC 2 Trust Services Criteria (TSC) for Privacy is the specialized audit framework for assessing how personal information is collected, used, retained, disclosed, and disposed of to meet the system's objectives. Based on the Generally Accepted Privacy Principles (GAPP), it provides a high-assurance baseline for the protection of Personally Identifiable Information (PII) in cloud and SaaS platforms.
Pillar: Cloud & SaaS · Authority: AICPA (Trust Services Criteria) · Version: 1.1.0 · Last updated:
Primary source: https://www.aicpa-cima.com/topic/audit-assurance/audit-and-assurance-greater-than-soc-2
SHA-256 integrity: a206f081c65c54f25c94b9d7a28b4db5b2b1a698a0ff60c6eb256c25e3ca85ec
Primary Citations — 6 traced to source
- 2017 Trust Services Criteria for Security, Availability, Processing Integrity, Confidentiality, and Privacy
- Generally Accepted Privacy Principles (GAPP)
+ 4 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/soc2-privacy-criteria.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/soc2-privacy-criteria.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/soc2-privacy-criteria
- Back to registry: Browse all 10,099 compliance nodes