# Compliance Frameworks

The core benefit of the DuploCloud Platform is accelerated and out-of-box compliance with various standards. We sit in on 100+ audits for our customers every year. The platform covers every aspect of cloud configuration. The most commonly audited frameworks we come across are SOC2, HIPAA, HITRUST, PCI, NIST, StateRamp, ISO, and GDPR.

* [SOC2](https://duplocloud.com/white-papers/soc-2-compliance-with-duplocloud/)
* [PCI](https://duplocloud.com/white-papers/pci-and-hipaa-compliance-with-duplocloud/#Control-by-Control_PCI_Implementation_Detail)
* [HIPAA](https://duplocloud.com/white-papers/pci-and-hipaa-compliance-with-duplocloud/#Control-by-Control_HIPAA_Implementation_Detail)
* [HiTrust](https://duplocloud.com/white-papers/pci-and-hipaa-compliance-with-duplocloud/#Control-by-Control_HITRUST_Implementation_Detail)
* [NIST-800-171](https://www.nist.gov/blogs/manufacturing-innovation-blog/what-nist-sp-800-171-and-who-needs-follow-it-0)

If you are using GRC tools like Vanta, Drata, Secureframe, Thoropass, or any others, leveraging DuploCloud will make all infrastructure checks go green in a matter of a few days. You can assign the failing tests in your GRC tool to DuploCloud support personnel, who can ensure their completion. If you are in an AWS environment and using Vanta, we have an integration with AWS that will setup the configuration and tags on AWS resources that Vanta is looking for, as described [here](https://docs.duplocloud.com/docs/automation-platform/overview/security-configuration-settings/vanta-compliance-controls).


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://docs.duplocloud.com/docs/automation-platform/security-and-compliance/access-control-4.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
