风险和合规
飞汇每年进行一次 SOC II 和 PCI DSS 审查,以确保飞汇安全处理客户数据,并符合所有适用法律,包括但不限于 GDPR、PIPEDA、FERPA、GLBA 和其他数据保护法,让您对交易的安全性有信心。
飞汇还按照全球监管机构的要求,贯彻实施反金融犯罪合规计划,以确保我们的业务符合我们运营所在地的法规。

我们为您提供的坚定不移的保护措施
Flywire Named to PCI Security Standards Council 2025-2027 Board of Advisors
Flywire has been named to the PCI Security Standards Council 2025-2027 Board of Advisors. Flywire’s Chief Technology Officer David King, and Chief Information Officer / Chief Information Security Officer Barbara Cousins, will represent Flywire on the PCI SSC Board of Advisors and provide their expertise to help shape the future of payment security.
What is Flywire's PCI DSS compliance level?
Flywire maintains PCI Level 1 Certification with third-party attestations—the highest level. This certification is renewed annually.
Does Flywire undergo SOC 2 audits?
Yes. Flywire undergoes an annual SOC 2 Type II audit supporting information management processes. These reports are available upon request for authorized security reviewers and procurement teams.
Which data protection regulations does Flywire comply with?
Flywire is compliant with GDPR (EU), PIPEDA (Canada), FERPA (US education records), GLBA (US financial privacy), HITRUST, and other regional data-protection laws. Flywire also maintains robust anti-financial crimes compliance programs.
What security measures does Flywire implement?
Flywire implements multiple security layers: on-going vulnerability scanning, application firewall, input validation, annual penetration tests, annual SOC II security audits, and annual PCI DSS external reviews.



