PCI DSS compliant cloud providers
21 of the 112 cloud providers we track say they hold a PCI DSS attestation.
Providers
PCI DSS is the payment card industry's standard for handling card data. Level 1 is the strictest tier, audited on site every year.
| Provider | Level | Source | Checked |
|---|---|---|---|
|
|
trust.akamai.com | ||
|
|
Level 1 | alibabacloud.com | |
|
|
Level 1 | aws.amazon.com | |
|
|
Level 1, some products | cloudflare.com | |
|
|
SAQ-A | digitalocean.com | |
|
|
Some Firebase services only | cloud.google.com | |
|
|
trustcentre.gcore.com | ||
|
|
cloud.google.com | ||
|
|
Level 1, Heroku Shield only | devcenter.heroku.com | |
|
|
Card payments only | docs.hetzner.com | |
|
|
SAQ-A | trust.hostinger.com | |
|
|
Data centers only | impossiblecloud.com | |
|
|
Physical security only | kb.leaseweb.com | |
|
|
Level 1 | learn.microsoft.com | |
|
|
SAQ-A | netlify.com | |
|
|
oracle.com | ||
|
|
Level 1, Hosted Private Cloud only | ovhcloud.com | |
|
|
Level 1, data centers only | paperspace.com | |
|
|
vercel.com | ||
|
|
Merchant | vultr.com | |
|
|
Data centers only | docs.wasabi.com |
No providers matching your filters.
Showing 21 of 21 providers
Heads up: Each row links to the provider's own statement, checked on the date shown. An attestation can cover one tier, one region or the platform alone rather than every service. Verify the scope before you rely on it.