Skip to main content

GLOSSARY

SOC 2

Audit report covering security, availability, confidentiality, processing integrity, and privacy controls.

SOC 2 evaluates controls for the trust services criteria (security, availability, confidentiality, processing integrity, privacy). Common proof for B2B security due diligence.

Complements ISO 27001 and privacy frameworks like GDPR and CCPA. A Type II report covers operating effectiveness over a period.

← All terms

In the product

Where this term matters in operation.

The glossary is not meant to be academic. It explains the language teams use in Kotao while selling, planning, paying, reporting, and automating.

In sales

Terms like this appear inside POS, checkout, bookings, offers, and customer communication.

In back office

Finance, inventory, HR, and reporting need the same meaning so reports do not drift apart.

In integrations

APIs, imports, webhooks, and exports work better when teams use the same definitions.