Hi all — quick compliance question.
Does Hugging Face currently hold an ISO/IEC 27001 certification?
-
If yes: can anyone share the scope (e.g., Hub, Spaces, Inference Endpoints/Dedicated), version (2013/2022), certifying body, and validity dates—or a public link to the certificate/attestation?
-
If not: is there an official statement/roadmap? What equivalent assurance (e.g., SOC 2, security whitepaper) have you used to pass vendor reviews?
We’re assessing HF for enterprise use, so community experiences from teams that completed security/procurement are especially welcome. Thanks!