Auth0

auth0.com · facts updated 1 day ago

Privacy facts at a glance
Retention
Data retention is listed as a topic in the security trust center but no specific retention period is stated in the excerpts provided.
Transfer mechanism
Standard Contractual Clauses (Controller-to-Processor and Processor-to-Processor) plus EU-US Data Privacy Framework and Swiss-US DPF
SCC modules
Module 2 · Module 3
DPA available
Yes
Certifications
SOC 1 · SOC 2 · SOC 3 · ISO/IEC 27001:2022 · ISO/IEC 27017:2015 · ISO/IEC 27018:2019 · FedRAMP · PCI DSS v4.0.0 · CSA STAR Level 2 · FIPS 140-2 · HIPAA · IRAP
GDPR addressed
Yes
CCPA addressed
Yes

Tracked documents

Privacy policy
https://www.okta.com/legal/privacy-policy/ checked 22 hours ago
Terms of service
https://www.okta.com/legal/terms-of-service/ checked 21 hours ago
Data processing agreement
https://www.okta.com/sites/default/files/2021-11/OKTA-DPA.pdf checked 8 hours ago
Subprocessor list
https://www.okta.com/legal/trustandcompliance/subprocessors/ checked 7 hours ago
Security / trust page
https://security.okta.com/ checked 1 minute ago

Recent changes

Subprocessor list 1 day ago

Document updated.

Terms of service 1 day ago

Document updated.

Privacy policy 1 day ago

Document updated.

Terms of service 4 days ago

Document updated.

Privacy policy 4 days ago

Document updated.

Security / trust page 4 days ago

Document updated.

Subprocessor list 4 days ago

Document updated.

Terms of service 6 days ago

Document updated.

Public summary; per-account review history visible to subscribers tracking this vendor.

Track Auth0 in your workspace.

Get notified when Auth0 adds a subprocessor, changes retention, updates their DPA, or quietly amends their privacy posture.

Start tracking — 14-day trial
No card required.