
SOC 3 Type II
Publicly distributable report on trust services criteria.
Overview
SOC 3 is the general-use version of the SOC 2 report. While SOC 2 reports are restricted to specific parties under nondisclosure agreements, the SOC 3 report can be freely distributed and publicly displayed. It provides the same level of assurance based on the same Trust Services Criteria, but without the detailed control descriptions and test results. CodeMiners publishes a SOC 3 report to provide public attestation of our security posture.
Governing Body
American Institute of Certified Public Accountants (AICPA)
Scope of Certification
Covers the same Trust Services Criteria as SOC 2 (security, availability, processing integrity, confidentiality, privacy) but produces a general-use report suitable for public distribution.
Audit and Assessment Process
The SOC 3 examination is conducted simultaneously with the SOC 2 audit. The same testing procedures apply; only the report format differs. The SOC 3 report contains the auditor's opinion and a management assertion without detailed system descriptions or test results.
Key Requirements
- All SOC 2 control objectives must be met
- Unqualified (clean) auditor opinion required for public display
- Management assertion on system description accuracy
- Seal of assurance approved for public use
Compliance Entitlements
- Publicly shareable trust services attestation
- Based on the same rigorous SOC 2 audit criteria
- Suitable for display on websites and marketing materials
- Provides transparency without disclosing sensitive control details
Client Benefits
- Allows prospects to verify CodeMiners' compliance posture before engaging under NDA
- Provides a trust signal on public-facing materials
- Demonstrates willingness to be transparent about security practices
Related Certifications
Build With an Award-Winning Team
65+ Clutch badges. 20+ certifications. 200+ verified reviews.
Start Your Project