Skip to main content

Press release

PinMeTo Passes ISO 27001:2022 Re-certification Audit

PinMeTo has passed its first full ISO 27001:2022 re-certification audit. Certificate C849231, issued by DNV, is valid until 16 October 2029 and covers Malmö and Gdańsk.

MALMÖ, Sweden,

PinMeTo, the European platform for multi-location marketing and local search visibility, today announced that it has passed its first full ISO 27001:2022 re-certification audit. The new certificate, C849231, was issued by DNV Business Assurance under RvA accreditation on 13 August 2026 and is valid from 17 October 2026 to 16 October 2029. It covers PinMeTo AB’s headquarters in Malmö, Sweden and PinMeTo Polska in Gdańsk, Poland.

Key facts

  • Certificate C849231, ISO/IEC 27001:2022, issued by DNV Business Assurance B.V. under RvA accreditation
  • Valid 17 October 2026 to 16 October 2029, following two annual surveillance audits and a full re-certification audit
  • Certified sites: PinMeTo AB, Adelgatan 9, Malmö, Sweden and PinMeTo Polska Sp. z o.o., Aleja Grunwaldzka 163, Gdańsk, Poland
  • Scope: development, sales, support and delivery of PinMeTo’s cloud-based SaaS platform for enterprise brands with multiple locations
  • First certified 17 October 2023, as the first multi-location brand management platform with ISO 27001:2022

On 17 October 2023 PinMeTo became the first multi-location brand management platform to achieve ISO 27001:2022 certification. The standard runs on a three-year cycle: two annual surveillance audits followed by a full re-certification audit of the entire information security management system. PinMeTo completed that cycle in 2026 with no change to the certified scope.

“Brands with hundreds or thousands of locations hand us their location data, their customer reviews and API access to their profiles on Google, Apple and Meta. A certificate that an independent auditor checks every year and fully re-audits every three years is the clearest way we can show that this trust is well placed. The re-certification confirms that the security system we built in 2023 is still operating in full.”

Henrik Schmidt, CEO of PinMeTo

What the certification covers

The certified scope is the development, sales, support and delivery of PinMeTo’s cloud-based SaaS platform for enterprise brands with multiple locations. It applies to every PinMeTo product, Listings, Posts, Reviews, Conversations, Store Locator, Local Pages and Places AI, and to the processes behind them.

The management system includes more than 90 security controls, among them AES-256 encryption at rest, TLS 1.2+ in transit, multi-factor authentication, role-based access control and 24/7 incident response. Primary data processing takes place in AWS Ireland, and PinMeTo’s controls pre-implement a large share of the ICT risk management requirements that DORA places on financial institutions and their technology vendors.

Why it matters for customers

For enterprise procurement and IT security teams, a current ISO 27001 certificate answers most of the vendor questionnaire up front. For financial institutions in particular, PinMeTo’s independently audited controls can shorten vendor assessments from months to weeks, and customers can request deeper security documentation under NDA.

Unlike a SOC 2 report, which describes how controls behaved during a review period that has already ended, an ISO 27001 certificate asserts that a management system is in operation now and is under continuing independent surveillance. For European buyers working under GDPR, and for financial-services buyers under DORA, that is the model regulators expect.

Certificate and verification

DNV certification mark: Information Security Management System, ISO/IEC 27001
Download the certificate (PDF, 2 pages)
Issued by DNV Business Assurance B.V., Barendrecht, 13 August 2026. The appendix lists both certified sites. The certificate's status can also be checked in DNV's public register under number C849231.

Further detail on PinMeTo’s information security management system is published on the ISO 27001 and data security page.

About PinMeTo

PinMeTo helps multi-location brands get discovered, trusted, and chosen across search, maps, social media, and AI-powered discovery platforms. Trusted by more than 1,000 brands operating in over 125 countries, PinMeTo combines technology, data, and automation to help businesses maximize their local visibility and customer engagement worldwide.


Media contacts

PinMeTo

Daniel Melkersson, Chief Revenue Officer

daniel@pinmeto.com

+46 73 960 61 40

All press releases, company facts and brand assets

Frequently Asked Questions

Is PinMeTo ISO 27001 certified?
Yes. PinMeTo passed its first full ISO 27001:2022 re-certification audit in 2026, three years after becoming the first multi-location brand management platform to achieve the certification on 17 October 2023. Certificate C849231, issued by DNV, is valid from 17 October 2026 to 16 October 2029.
How can I verify PinMeTo's ISO 27001 certificate?
The certificate is listed in DNV's public register at certchecker.dnv.com under number C849231, and the certificate document is available for download on this page. Both show the scope, validity dates and the two certified sites: PinMeTo AB in Malmö and PinMeTo Polska in Gdańsk.
What does the certification cover?
The certified scope is the development, sales, support and delivery of PinMeTo's cloud-based SaaS platform for enterprise brands with multiple locations. It covers every PinMeTo product and more than 90 security controls, including AES-256 encryption at rest, TLS 1.2+ in transit, multi-factor authentication, role-based access control and 24/7 incident response.