generated: '2026-07-20' method: searched source: https://www.motiva.ai/data-protection/ notes: >- Motiva AI publishes its security and compliance posture on its Data Protection page. The platform is a SaaS layer that plugs into Oracle Eloqua; it does not publish a public developer API, OpenAPI spec, or OAuth surface, so cross-cutting API standards (OAuth2/OIDC/FAPI/JSON:API/RFC 9457) are not asserted here. standards: - id: soc-1 conforms: true evidence: Data center hosting carries SOC 1 certification (motiva.ai/data-protection) - id: soc-2 conforms: true evidence: Data center hosting carries SOC 2 certification (motiva.ai/data-protection) - id: soc-3 conforms: true evidence: Data center hosting carries SOC 3 certification (motiva.ai/data-protection) - id: iso-27001 conforms: true evidence: ISO 27001 certification cited on Data Protection page - id: ssae-16 conforms: true evidence: SSAE 16 attestation cited on Data Protection page - id: gdpr conforms: true evidence: GDPR compliance stated across product and data-protection materials - id: hipaa conforms: true evidence: HIPAA support cited for healthcare/pharma customers