← Back to glossaryGlossary

SOC 2 (Service Organization Control 2)

Reviewed 19 July 2026Canonical definitionPart of: Agent Evaluation Terms →

An auditing framework that evaluates how a service organization manages customer data based on five Trust Service Criteria: security, availability, processing integrity, confidentiality, and privacy. Increasingly required for SaaS and agent platforms.

§01 / QUESTIONSterm: SOC 2 (Service Organization Control 2)
Questions

Common questions.

What is SOC 2 (Service Organization Control 2)?

An auditing framework that evaluates how a service organization manages customer data based on five Trust Service Criteria: security, availability, processing integrity, confidentiality, and privacy.

How does SOC 2 (Service Organization Control 2) work?

Increasingly required for SaaS and agent platforms.

Which terms are related to SOC 2 (Service Organization Control 2)?

Closely related concepts include SOC 2 Type II, Reflection Agent, Answer Faithfulness, Continuous Integration Agent. Each is defined in the Prefactor glossary.

§02 / RELATEDnext: where this fits
Keep reading

Where this fits.

See how every agent performs, and make it better

Prefactor helps teams observe, evaluate, and improve their AI agents in production, across every framework and provider.