For the complete documentation index, see llms.txt. This page is also available as Markdown.

Node Operator Compliance

About this document

This page summarizes the publicly stated security and compliance posture of the node operators in ether.fi's operator landscape.

  • ISO/IEC 27001: information-security management system certification.

  • SOC 2: AICPA Trust Services report. Type I attests controls are

    designed correctly at a point in time; Type II attests they operated

    effectively over a period (the stronger of the two).

  • Data-center certifications: whether the underlying hosting providers /

    data centers hold ISO 27001 and SOC 2 attestations.

Methodology & disclaimer

Entries are compiled from operators' public disclosures and self-reported information as of the data cutoff above.

Summary

Operator
HQ
ISO 27001
SOC 2

Galaxy Digital

USA

No

Yes

Luganodes

Switzerland

Yes

Yes (Type II)

Stakefish

BVI

No

Yes (Type II)

Validation Cloud

Switzerland

No

Yes (Type I + II)

InfStones

USA

No

Yes (Type I + II)

Node Monster

Israel

In progress

In progress

Allnodes

USA

No

No

HashKey Cloud

Hong Kong

Yes

Expected Aug 2026

P2P.org

Cayman Islands

In progress

Yes (Type I + II)

Chainnodes

UK

No

No

eBunker

Hong Kong

No

In progress (Type I)

DSRV

South Korea

Yes

SOC 1 Type I (SOC 2 in progress)

Nethermind / Twinstake

UK

No

Yes

Finoa

Germany

No

No

Cosmostation

South Korea

(renewal pending)

No

MAVAN (Pier Two)

Australia → USA

Yes

Yes (Type I + II)

Stakin

Estonia

Yes

In Progress

Blockdaemon

USA

Yes

Yes (Type II)

Last updated