generated: '2026-07-18' method: searched source: https://docs.aviatrix.com + https://trust.aviatrix.com/ standards: - id: oidc conforms: true evidence: Aviatrix PaaS supports single sign-on via OIDC (docs/cloud/platform-administration/manage/sso-with-paas). - id: saml2 conforms: true evidence: CoPilot and UserVPN support SAML-based authentication (Okta, Entra ID, OneLogin, Duo). - id: ldap conforms: true evidence: Aviatrix supports LDAP/AD-based authentication for VPN users. - id: soc2 conforms: true evidence: SOC 2 report available via trust.aviatrix.com Trust Center. - id: iso27001 conforms: true evidence: ISO 27001 certification documented in the Trust Center. - id: tisax conforms: true evidence: TISAX assessment documented in the Trust Center. - id: gdpr conforms: true evidence: GDPR program listed in the Trust Center. - id: ccpa conforms: true evidence: CCPA program listed in the Trust Center. - id: oauth2 conforms: false evidence: No public OAuth2 authorization-server surface documented for the Controller/CoPilot API. - id: rfc9457-problem-details conforms: false evidence: No public OpenAPI captured; error envelope not documented. notes: No public OpenAPI/Swagger is published (the CoPilot REST API reference states documentation is coming in a future release), so standards are asserted from the platform docs and Trust Center rather than derived from a spec.