---
title: "Compliance"
description: "Fly.io is SOC 2 Type 2 audited and our hardware runs in ISO 27001 datacenters. Request a copy of our report or sign a BAA with a digital signature."
---

# Compliance Made *Easy*

We don't mess around when it comes to paperwork (but don’t worry, we use digital signatures).

[Get Started](https://fly.io/app/sign-up)

## SOC2 Type2 Report

Fly.io is independently audited, [certified](https://fly.io/blog/soc2-the-screenshots-will-continue-until-security-improves/), and our hardware runs in ISO 27001 datacenters. Get a copy of our report and rest easy.

## Business Associate Agreement

When you’re ready to start deploying HIPAA apps, you’ll need a BAA. Ours is pre-signed by Fly.io and will become active when you sign it. We also offer a BAA for Tigris Data directly.

## Data Processing Agreement

Users who need to comply with the EU's General Data Privacy Regulation (GDPR) will need a Data Processing Agreement. Ours is pre-signed by Fly.io and will become active when you sign it.

## Security & Compliance Questionnaire

Get your security, privacy, and data protection questions (or your clients') answered without a lot of legwork or research. Our pre-filled questionnaire is in the Trust Center, so you can get back to shipping features.

## Compliance Assistance

Need to ask something more in-depth? Get access to a compliance email address, so we can walk you through whatever you need to know.

## Trusted by teams at

- **Wireguard/VPN**
  Everything on our platform is connected via a WireGuard mesh: a next-generation in-kernel VPN designed by vulnerability researchers for simplicity, auditability, and modern cryptography.
  
  [Learn More](https://docs.fly.io/about/healthcare#wireguard-everywhere)
- **Default-Deny Public Networking**
  With routable IPv6 addresses and shared IPv4 addresses, nothing on your app is exposed unless you ask us to expose it. You’re locked down by default.
  
  [Learn More](https://docs.fly.io/about/healthcare#default-deny-public-networking)
- **Hardened Hosting**
  Apps on Fly.io run inside Firecracker, a memory-safe KVM hypervisor. We turn container images from our users into VMs, for full, no-shared-kernel isolation between applications.
  
  [Learn More](https://docs.fly.io/about/healthcare#hardened-hosting)
- **SSO and MFA for Free**
  Support for single-sign on and standard multifactor authentication apps come standard with Fly.io.
  
  [Learn More](https://docs.fly.io/about/healthcare#authentication)

## Compliance & Security That Lets You Breathe Easy

We check off the to-do list and lock up the data, so you can just relax. Whether you're dealing with HIPAA, PHIPA, GDPR, or other regulations, our robust infrastructure has you covered.

[Get Started](https://fly.io/app/sign-up)
