[PRESS RELEASE – Kwai Chung, Hong Kong, August 26th, 2026]
CoinMarketCap has obtained a SOC 2 Type 1 attestation report, following an independent examination of the controls protecting the systems behind its market data. CoinMarketCap also completed the SOC 1 Type 1 examination. Both reports add to the international certifications the company already holds for information security and privacy management.
SOC 2 is the assessment most often requested by enterprise buyers evaluating a technology vendor. Conducted in accordance with AICPA attestation standards, CoinMarketCap’s SOC 2 Type 1 report assesses the design and implementation of controls against the applicable Trust Services Criteria for Security. The SOC 1 Type 1 report covers controls relevant to internal control over financial reporting. Type 1 reports reflect controls as at a specified date rather than over a period of time, and both are available to partners and clients on request.
The reports add to the dual ISO certification CoinMarketCap obtained in June 2026. The company is certified to ISO/IEC 27001:2022 for information security management under certificate IS 838849, and to ISO/IEC 27701:2019 for privacy information management under certificate PM 838852, both independently assessed and awarded by the British Standards Institution. The certifications are maintained through a three-year cycle with annual surveillance audits, and both remain active.
The scope of the assessments spans the parts of the business that handle user and market information. That includes price tracking, market data, and the APIs that serve it; the cloud systems and operational processes underneath them; account management and the handling of personally identifiable information; and the CoinMarketCap applications on iOS and Android.
The distinction the company is drawing is between security that is asserted and security that has been examined. CoinMarketCap sits upstream of a large amount of crypto infrastructure, with its data feeding wallets, trading interfaces, research tools, and increasingly AI agents that query it programmatically. Buyers in that position rarely take a vendor at its word. Procurement teams, compliance functions, and institutional counterparties work from recognized frameworks and independent reports, and ISO certifications and SOC attestation reports are the credentials those teams already know how to read.
The privacy side of the program is covered by ISO/IEC 27701, an extension of ISO 27001 that governs how personal data is collected, processed, and protected, and which is designed to align with GDPR and other applicable global privacy regulations. For a platform with users across a wide range of jurisdictions, that alignment matters as much as the security controls themselves.
“Millions of people use CoinMarketCap to make decisions about their money,” said Rush, CEO of CoinMarketCap. “Trust in that data should be demonstrated rather than claimed. Independent assessors have examined how we run security and privacy, and documented it in a form our partners and clients can review.”
CoinMarketCap continues to expand its developer and enterprise business, including its market data APIs and agent-facing products. Compliance credentials are increasingly a prerequisite in those conversations rather than a differentiator, particularly for institutional clients whose own obligations require them to evidence the controls of the vendors they depend on. CoinMarketCap intends to maintain and extend its assessment program over time.
About CoinMarketCap
CoinMarketCap stands as the Home Of Crypto. With over 1 billion monthly page views and 53 million tracked cryptocurrencies, CoinMarketCap drives the industry forward by organizing and delivering comprehensive crypto intelligence. Major media outlets including Forbes, Bloomberg, CNBC, and The Wall Street Journal rely on CoinMarketCap as their primary source for crypto data.
The post CoinMarketCap Obtains SOC 1 & 2 Attestations and Dual ISO Certifications appeared first on CryptoPotato.
[PRESS RELEASE – Kwai Chung, Hong Kong, August 26th, 2026]
CoinMarketCap has obtained a SOC 2 Type 1 attestation report, following an independent examination of the controls protecting the systems behind its market data. CoinMarketCap also completed the SOC 1 Type 1 examination. Both reports add to the international certifications the company already holds for information security and privacy management.
SOC 2 is the assessment most often requested by enterprise buyers evaluating a technology vendor. Conducted in accordance with AICPA attestation standards, CoinMarketCap’s SOC 2 Type 1 report assesses the design and implementation of controls against the applicable Trust Services Criteria for Security. The SOC 1 Type 1 report covers controls relevant to internal control over financial reporting. Type 1 reports reflect controls as at a specified date rather than over a period of time, and both are available to partners and clients on request.
The reports add to the dual ISO certification CoinMarketCap obtained in June 2026. The company is certified to ISO/IEC 27001:2022 for information security management under certificate IS 838849, and to ISO/IEC 27701:2019 for privacy information management under certificate PM 838852, both independently assessed and awarded by the British Standards Institution. The certifications are maintained through a three-year cycle with annual surveillance audits, and both remain active.
The scope of the assessments spans the parts of the business that handle user and market information. That includes price tracking, market data, and the APIs that serve it; the cloud systems and operational processes underneath them; account management and the handling of personally identifiable information; and the CoinMarketCap applications on iOS and Android.
The distinction the company is drawing is between security that is asserted and security that has been examined. CoinMarketCap sits upstream of a large amount of crypto infrastructure, with its data feeding wallets, trading interfaces, research tools, and increasingly AI agents that query it programmatically. Buyers in that position rarely take a vendor at its word. Procurement teams, compliance functions, and institutional counterparties work from recognized frameworks and independent reports, and ISO certifications and SOC attestation reports are the credentials those teams already know how to read.
The privacy side of the program is covered by ISO/IEC 27701, an extension of ISO 27001 that governs how personal data is collected, processed, and protected, and which is designed to align with GDPR and other applicable global privacy regulations. For a platform with users across a wide range of jurisdictions, that alignment matters as much as the security controls themselves.
“Millions of people use CoinMarketCap to make decisions about their money,” said Rush, CEO of CoinMarketCap. “Trust in that data should be demonstrated rather than claimed. Independent assessors have examined how we run security and privacy, and documented it in a form our partners and clients can review.”
CoinMarketCap continues to expand its developer and enterprise business, including its market data APIs and agent-facing products. Compliance credentials are increasingly a prerequisite in those conversations rather than a differentiator, particularly for institutional clients whose own obligations require them to evidence the controls of the vendors they depend on. CoinMarketCap intends to maintain and extend its assessment program over time.
About CoinMarketCap
CoinMarketCap stands as the Home Of Crypto. With over 1 billion monthly page views and 53 million tracked cryptocurrencies, CoinMarketCap drives the industry forward by organizing and delivering comprehensive crypto intelligence. Major media outlets including Forbes, Bloomberg, CNBC, and The Wall Street Journal rely on CoinMarketCap as their primary source for crypto data.
The post CoinMarketCap Obtains SOC 1 & 2 Attestations and Dual ISO Certifications appeared first on CryptoPotato.
