<!-- LLM_VERSION_INFO
FORMAT: text/markdown
CONTENT_TYPE: article
ORIGINAL_URL: https://basistheory.com/security
ALTERNATE_VERSION: security/index.html (text/html)
EXTRACTION_DATE: 2026-04-18T23:46:27.254Z

This is the markdown version with text-only content (images converted to alt-text).
For rich formatting with images, request the HTML version at: security/index.html
-->

## Security and privacy are built into our DNA

Our platform is engineered with a security-first mindset, ensuring that every transaction is fortified with the highest level of data protection.

### PCI

**LEVEL 1**  
**PCI Level 1 Compliant**  
Basis Theory’s environment has been independently verified to meet or exceed the Payment Card Institute Data Security Standard (PCI DSS) for Level 1 merchants and service providers.

### SOC 2

**TYPE II**  
**SOC 2 Type II Certified**  
External assessment have validated Basis Theory’s compliance, security, privacy, and risk posture to meet or exceed SOC 2 Type II requirements.

### ISO

**27001**  
**ISO 27001 Certified**  
Achieved ISO 27001 certification, reflecting our commitment to information security management excellence.

### HIPAA

**Compliant**  
**HIPAA Compliant**  
Protect, authorize, and share patient’s protected health information (PHI) in our independently certified compliant environment.

### Security concerns?

For security inquiries or concerns, contact our security, compliance, and risk teams, and explore our [Bug Bounty Program](https://basistheory.notion.site/Basis-Theory-Bug-Bounty-Program-1be43b3005174e5881716885fe6f8565?pvs=4).

More of the transactions you want.
Less of the risk and fraud you don't. Start testing now or discuss your use case with our team today.

### Use cases

- [Creator Economy](/content/use-cases/creator-economy/index.html)
- [Digital Health](/content/use-cases/health/index.html)
- [E-commerce](/content/use-cases/ecommerce/index.html)
- [Fintech](/content/use-cases/fintech/index.html)
- [Gaming](/content/use-cases/gaming/index.html)
- [Subscription Platforms](/content/use-cases/subscriptions/index.html)
- [Vertical SaaS](/content/use-cases/vsaas/index.html)
