What SOC 2 (Privacy Criteria) requires
The SOC 2 Trust Services Criteria (TSC) for Privacy is the specialized audit framework for assessing how personal information is collected, used, retained, disclosed, and disposed of to meet the system's objectives. Based on the Generally Accepted Privacy Principles (GAPP), it provides a high-assurance baseline for the protection of Personally Identifiable Information (PII) in cloud and SaaS platforms.
Pillar: Cloud & SaaS · Authority: AICPA (Trust Services Criteria) · Version: 1.1.0 · Last updated:
Primary source: https://www.aicpa-cima.com/topic/audit-assurance/audit-and-assurance-greater-than-soc-2
SHA-256 integrity: ab862275652dd1029b5c5b42e13dc9f57401a1923c609d8a05fa5a5582f768df
Primary Citations — 6 traced to source
- {"citation_id":"AICPA_TSC_2017","title":"2017 Trust Services Criteria for Security, Availability, Processing Integrity, Confidentiality, and Privacy","issuer":"American Institute of Certified Public Accountants (AICPA)","url":"https://www.aicpa.org/resources/download/trust-services-criteria"}
- {"citation_id":"GAPP_2009","title":"Generally Accepted Privacy Principles (GAPP)","issuer":"AICPA/CICA","url":"https://www.aicpa.org/resources/download/generally-accepted-privacy-principles"}
+ 4 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/soc2-privacy-criteria.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/soc2-privacy-criteria.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/soc2-privacy-criteria
- Back to registry: Browse all 10,085 compliance nodes