Trust & compliance

The compliance posture ships with the platform.

You don't need a compliance team to use Bequest. The platform carries it. Audits, attestations, and registrations are all maintained by us, in the open.

Attestations

What we keep current.

SOC 2 Type II

Annual third-party audit covering security, availability, and confidentiality. Report available under NDA.

PCI-DSS Level 1

The highest tier of payment-card industry certification. Card data never touches your servers.

GDPR

EU data subjects supported. Data processing agreement on request; standard contractual clauses in place.

CCPA

California consumer privacy compliance, including the right to delete and the right to know.

41-state charitable registration

Solicitation registration maintained in every state that requires one, renewed automatically.

FinCEN MSB

Registered Money Services Business with FinCEN; AML program reviewed annually.

Reach us

For auditors, counsel, and security teams.