Beanstack SOC 2 and 3 Report

Protecting reader and student data is part of how we build and operate Beanstack. Our SOC 2 and 3 reports provide independent assurance around the controls we use to support its security.

Independent Assurance You Can Access

Beanstack’s latest SOC 3 examination covers January 1 through June 30, 2026, and was performed by independent service auditor Boulay.

SOC 3 reports are designed for general use, giving schools, libraries, IT teams, and other stakeholders access to independent information about Beanstack’s security controls.

The examination evaluated whether controls within the Beanstack digital platform were effective throughout the reporting period in providing reasonable assurance that Beanstack’s service commitments and system requirements were achieved based on the applicable Trust Services Criteria relevant to security.

Our Commitment to Security

Beanstack maintains safeguards and operational practices designed to protect customer data, including encryption, access controls, incident response processes, vendor management, and data lifecycle policies.

Existing Beanstack customers can request our full SOC 2 Type II report by contacting their customer success manager. Prospective customers can contact our team to request the SOC 2 report or to learn more about Beanstack’s overall security and data privacy practices.