Skip to content
CertiTrack

For teams that rely on IT and software vendors

Your software vendors’ security paperwork, in one place.

IT vendors and SaaS providers touch your data, so their cyber liability coverage, SOC 2 reports, and agreements matter. CertiTrack keeps each vendor’s documents together, tracks their dates, and asks vendors for updates before anything goes stale.

Vendors technology teams track

  • SaaS and software providers
  • Managed IT and support
  • Developers and agencies
  • Data and cloud service providers

What CertiTrack takes off your plate

Security reports that age out

A SOC 2 report or ISO 27001 certificate covers a set period. Track each one with its date and get reminded to request the new one before your annual review.

Coverage you never checked

Cyber liability and E&O coverage are easy to assume and hard to verify later. CertiTrack keeps each vendor’s certificates on file with their coverage amounts and dates.

Agreements scattered across inboxes

Keep each vendor’s NDA and MSA next to their insurance and security reports, with the end date tracked, so renewals do not slip.

Set up for you

The documents technology vendors need

Choose technology when you sign up and CertiTrack adds these document types automatically. You can add or remove types any time.

Usually required

  • Professional Liability Insurance (E&O)
  • Cyber Liability Insurance
  • General Liability Insurance
  • W-9 Form
  • Business License

Also tracked

  • SOC 2 Report
  • ISO 27001 Certification
  • NDA (Non-Disclosure Agreement)
  • MSA (Master Services Agreement)
  • Certificate of Insurance

How it works

  1. 1

    List your vendors

    Start with the vendors that hold your data. Mark the critical ones as high risk so they stand out.

  2. 2

    Collect their documents

    Send a secure link and the vendor uploads their certificates and reports directly.

  3. 3

    Review on schedule

    Every document has its own date and reminders, so your annual vendor review starts with current paperwork.

Technology questions

Can I track SOC 2 reports and ISO 27001 certificates?

Yes. When you choose technology as your industry, CertiTrack adds document types like SOC 2 reports, ISO 27001 certification, cyber liability insurance, NDAs, and MSAs.

Does CertiTrack review a SOC 2 report for me?

No. CertiTrack stores the report and tracks its date so you know when to ask for a new one. Reviewing the findings is still up to your team.

Do NDAs and MSAs get reminders?

Yes, when you give them an end or review date. Reminders go out 90, 60, 30, and 7 days before that date.

Is there a free plan?

Yes. Track up to 5 vendors free with no credit card. Paid plans start at $49 a month.

Start tracking your technology vendors today.

Free for up to 5 vendors. No credit card required.