With retail operations software from Zipline, you fulfill all your goals by unifying your entire enterprise.
Summary from the company’s website.
Publicly advertised compliance posture
As observed on September 8, 2026 on the organization’s public trust center.
-
SOC 2
Independent CPA audit of controls for security, availability, and confidentiality.
-
GDPR
Public claim of alignment with the EU General Data Protection Regulation.
-
CCPA
Publicly advertised on the organization’s trust center.
-
HIPAA
Public claim of compliance with US health-data privacy and security rules. HIPAA has no certification; compliance is self-attested.
Compliance timeline
-
February 2023
Trust center first observed in public web archives
-
September 8, 2026
Posture last observed by Trust Index
Subprocessors
Third parties Getzipline discloses on its trust center. Linked entries have their own profile in the Trust Index.
50% chain trust: 7 of 14 disclosed subprocessors are themselves in the Trust Index.
- Heroku Application Hosting
- Crunchy Data Database Hosting
- Amazon Web Services CDN and File Storage
- Redis In-memory Data Caching
- elastic Search
- Google Cloud Platform Data Warehousing and Analytics
- Metabase Data Analytics
- Datadog Logging, Monitoring, and Alerting
- SparkPost Email Delivery
- Intercom Live Chat Customer Support
- Sentry Logging, Monitoring, and Alerting
- Fivetran Data Analytics
- OpenAI Inference and Summarization of Content
- LangFuse AI Observability
About this data
The Trust Index reports only what organizations publicly advertise. A missing framework here means no public claim was observed as of September 8, 2026; it never means an organization is non-compliant. HIPAA entries reflect a public claim of compliance; no HIPAA certification exists. Corrections are welcome and verified against public evidence. Read the full methodology.