{
  "generated_from": "https://saas-ranking.com/api-management/theneo",
  "disclaimer": "Every result describes what we found at the addresses we checked on the date given. It is not a statement about what the vendor does or does not have. The score is a public transparency score, not a product or security rating.",
  "snapshot": "r7.74650",
  "snapshot_run": 7,
  "score_version": "v1",
  "vendor": {
    "name": "Theneo",
    "domain": "theneo.io"
  },
  "category": {
    "slug": "api-management",
    "name": "API management"
  },
  "score": 52,
  "band": "D",
  "measured": 12,
  "of": 12,
  "criteria": [
    {
      "key": "dpa",
      "name": "Data processing agreement",
      "weight": 3,
      "result": "found",
      "source_url": "https://www.theneo.io/data-processing-agreement",
      "addresses_checked": [
        {
          "url": "https://theneo.io/legal/dpa",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/dpa",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/legal/data-processing-agreement",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/data-processing-agreement",
          "result": "found"
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.326Z"
    },
    {
      "key": "subprozessoren",
      "name": "Subprocessor list",
      "weight": 3,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "https://theneo.io/legal/subprocessors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/subprocessors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/sub-processors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/legal/sub-processors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/trust/subprocessors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/privacy/subprocessors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/legal/subprocessor-list",
          "result": "reached, no match (HTTP 404)"
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.328Z"
    },
    {
      "key": "datenregion",
      "name": "Data location stated",
      "weight": 3,
      "result": "found",
      "source_url": "https://www.theneo.io/privacy-terms",
      "addresses_checked": [
        {
          "url": "https://theneo.io/security",
          "result": "reached, no match (HTTP 200)"
        },
        {
          "url": "https://theneo.io/trust",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/legal/privacy",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/privacy",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/privacy-policy",
          "result": "found"
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.328Z"
    },
    {
      "key": "statusseite",
      "name": "Status page with history",
      "weight": 2,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "https://status.theneo.io/",
          "result": "The name \"status.theneo.io\" could not be resolved."
        },
        {
          "url": "https://theneo.io/status",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io.statuspage.io/",
          "result": "Could not be fetched: fetch failed."
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.329Z"
    },
    {
      "key": "preise",
      "name": "Public pricing",
      "weight": 2,
      "result": "found",
      "source_url": "https://www.theneo.io/pricing",
      "addresses_checked": [
        {
          "url": "https://theneo.io/pricing",
          "result": "found"
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.330Z"
    },
    {
      "key": "zertifizierungen",
      "name": "Certifications named",
      "weight": 1,
      "result": "found",
      "source_url": "https://www.theneo.io/security",
      "addresses_checked": [
        {
          "url": "https://theneo.io/security",
          "result": "found"
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.330Z"
    },
    {
      "key": "sla",
      "name": "Uptime SLA with a figure",
      "weight": 1,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "https://theneo.io/legal/sla",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/sla",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/legal/service-level-agreement",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/trust/sla",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/uptime",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/legal/uptime-sla",
          "result": "reached, no match (HTTP 404)"
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.331Z"
    },
    {
      "key": "transport",
      "name": "HTTPS enforced with HSTS",
      "weight": 2,
      "result": "found",
      "source_url": "https://theneo.io/",
      "addresses_checked": [
        {
          "url": "http://theneo.io/",
          "result": "redirects to https://theneo.io/"
        },
        {
          "url": "https://theneo.io/",
          "result": "HSTS max-age=31536000"
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.332Z"
    },
    {
      "key": "tracker_vor_einwilligung",
      "name": "No third-party tracking before consent",
      "weight": 2,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "https://theneo.io/",
          "result": "third-party requests before any interaction: cdn.prod.website-files.com, custom-theneo-videos.s3.us-east-1.amazonaws.com, d3e54v103j8qbb.cloudfront.net, theneo.betteruptime.com"
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.334Z"
    },
    {
      "key": "security_txt",
      "name": "security.txt (RFC 9116)",
      "weight": 1,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "https://theneo.io/.well-known/security.txt",
          "result": "reached, no match (HTTP 404)"
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.335Z"
    },
    {
      "key": "subprozessor_meldung",
      "name": "Notice before subprocessors change",
      "weight": 2,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "https://theneo.io/legal/subprocessors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/subprocessors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/sub-processors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/legal/dpa",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/dpa",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/legal/data-processing-agreement",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/trust/subprocessors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/legal/sub-processors",
          "result": "reached, no match (HTTP 404)"
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.336Z"
    },
    {
      "key": "datenschutzkontakt",
      "name": "Named privacy contact",
      "weight": 1,
      "result": "found",
      "source_url": "https://www.theneo.io/privacy-terms",
      "addresses_checked": [
        {
          "url": "https://theneo.io/legal/privacy",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/privacy",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://theneo.io/privacy-policy",
          "result": "found"
        }
      ],
      "note": null,
      "measured_on": "2026-09-05T07:24:29.336Z"
    }
  ],
  "details": [
    {
      "key": "datenregion",
      "name": "Hosting location named",
      "value": "european-economic-area",
      "subject": null,
      "quote": "is established in the United States and our Services are hosted there. Where personal data is transferred from the EEA, UK, or Switzerland to countries without an adequacy decision, we use appropriate...",
      "source_url": "https://www.theneo.io/privacy-terms",
      "measured_on": "2026-09-05T07:24:29.329Z"
    },
    {
      "key": "datenregion",
      "name": "Hosting location named",
      "value": "switzerland",
      "subject": null,
      "quote": "is established in the United States and our Services are hosted there. Where personal data is transferred from the EEA, UK, or Switzerland to countries without an adequacy decision, we use appropriate...",
      "source_url": "https://www.theneo.io/privacy-terms",
      "measured_on": "2026-09-05T07:24:29.329Z"
    },
    {
      "key": "datenregion",
      "name": "Hosting location named",
      "value": "united-states",
      "subject": null,
      "quote": "is established in the United States and our Services are hosted there.",
      "source_url": "https://www.theneo.io/privacy-terms",
      "measured_on": "2026-09-05T07:24:29.329Z"
    },
    {
      "key": "datenschutzkontakt_art",
      "name": "Privacy contact",
      "value": "data-protection-officer",
      "subject": null,
      "quote": "Data Protection Officer",
      "source_url": "https://www.theneo.io/privacy-terms",
      "measured_on": "2026-09-05T07:24:29.337Z"
    },
    {
      "key": "drittanbieter",
      "name": "Third-party host on first load",
      "value": "amazonaws.com",
      "subject": null,
      "quote": "custom-theneo-videos.s3.us-east-1.amazonaws.com",
      "source_url": "https://theneo.io/",
      "measured_on": "2026-09-05T07:24:29.334Z"
    },
    {
      "key": "drittanbieter",
      "name": "Third-party host on first load",
      "value": "betteruptime.com",
      "subject": null,
      "quote": "theneo.betteruptime.com",
      "source_url": "https://theneo.io/",
      "measured_on": "2026-09-05T07:24:29.334Z"
    },
    {
      "key": "drittanbieter",
      "name": "Third-party host on first load",
      "value": "cloudfront.net",
      "subject": null,
      "quote": "d3e54v103j8qbb.cloudfront.net",
      "source_url": "https://theneo.io/",
      "measured_on": "2026-09-05T07:24:29.334Z"
    },
    {
      "key": "drittanbieter",
      "name": "Third-party host on first load",
      "value": "website-files.com",
      "subject": null,
      "quote": "cdn.prod.website-files.com",
      "source_url": "https://theneo.io/",
      "measured_on": "2026-09-05T07:24:29.334Z"
    },
    {
      "key": "hsts_frist",
      "name": "HSTS max-age",
      "value": "31536000",
      "subject": null,
      "quote": "max-age=31536000",
      "source_url": "https://theneo.io/",
      "measured_on": "2026-09-05T07:24:29.333Z"
    },
    {
      "key": "zertifikat",
      "name": "Certification named",
      "value": "iso-27001",
      "subject": "anbieter",
      "quote": "Theneo Security & Compliance | SOC 2, ISO 27001, GDPR Meet Elva and Make Your APIs Agent-Ready → Mode Features API Reference Ask AI Bot API Changel",
      "source_url": "https://www.theneo.io/security",
      "measured_on": "2026-09-05T07:24:29.331Z"
    },
    {
      "key": "zertifikat",
      "name": "Certification named",
      "value": "iso-9001",
      "subject": "erwaehnt",
      "quote": "uphold certifications and compliance with the following industry standards GDPR SOC 2 II ISO 27001 ISO 9001 Security Controls With industry best practices, third-party auditors, and a collection of op...",
      "source_url": "https://www.theneo.io/security",
      "measured_on": "2026-09-05T07:24:29.331Z"
    },
    {
      "key": "zertifikat",
      "name": "Certification named",
      "value": "soc-2",
      "subject": "anbieter",
      "quote": "Theneo Security & Compliance | SOC 2, ISO 27001, GDPR Meet Elva and Make Your APIs Agent-Ready → Mode Features API Reference Ask AI Bot",
      "source_url": "https://www.theneo.io/security",
      "measured_on": "2026-09-05T07:24:29.331Z"
    },
    {
      "key": "zertifikat",
      "name": "Certification named",
      "value": "soc-2-type-2",
      "subject": "unklar",
      "quote": "idents Conducting quarterly management reviews of incidents Compliance Management Undergoing annual SOC2 Type II audits Conducting quarterly internal compliance audits Maintaining GDPR compliance Ensu...",
      "source_url": "https://www.theneo.io/security",
      "measured_on": "2026-09-05T07:24:29.331Z"
    }
  ]
}