---
title: SOC 1
source: https://docs.newrelic.com/docs/security/security-privacy/compliance/certificates-standards-regulations/soc1
---

The American Institute of Certified Public Accountants (AICPA) Service Organization Control 1 (SOC 1) report provides reasonable assurance on the suitability of the design and operating effectiveness of controls relevant to user entities’ internal control over financial reporting.  The SOC 1 report covers the control areas of data replication, systems monitoring, information security, application change control, and data communications.

## Applicable document by service [#applicable-services]

> #### ⚠️ CAUTION
>
> Not all [New Relic Observability Platform](https://docs.newrelic.com/docs/new-relic-one/use-new-relic-one/get-started/introduction-new-relic-one/) services are in compliance with this program. For non-compliant services, please see the section of [services not in scope](#not-scope).

The following applies to the New Relic Observability Platform:

| Document                             | Last updated | Infrastructure          | Services                         |
| ------------------------------------ | ------------ | ----------------------- | -------------------------------- |
| [SOC 1](https://trust.newrelic.com/) | 2025-AUG-31  | AWS, Azure, First Party | New Relic Observability Platform |

> #### ⚠️ IMPORTANT
>
> If you require additional information regarding New Relic's SOC 1 attestation letter, please reach out to your New Relic account representative.

## Services not in scope [#not-scope]

The following services are not SOC 1 certified:

| Last updated | Infrastructure | Services                         |
| ------------ | -------------- | -------------------------------- |
| N/A          | GCP            | Pixie: Community Cloud for Pixie |
| N/A          | GCP            | Pixie: Auto-telemetry with Pixie |
