Which frameworks meet which regulations. The map that compliance officers and CISOs need before approving a framework decision.
| Framework | PCI DSS 4.0 | GDPR | HIPAA | SOC 2 | NIS2 (EU) | FedRAMP | CCPA/CPRA | WCAG 2.1 AA |
|---|---|---|---|---|---|---|---|---|
| Wordpress | ✗ | ! | ✗ | ! | ✗ | ✗ | ! | ! |
| Nextjs | ✓ | ✓ | ● | ✓ | ✓ | ● | ✓ | ✓ |
| Astro | ✓ | ✓ | ✓ | ✓ | ✓ | ● | ✓ | ✓ |
| Django | ● | ● | ● | ● | ● | ● | ● | ● |
| Drupal | ! | ● | ! | ! | ! | ! | ● | ● |
| Fastapi | ✓ | ✓ | ✓ | ✓ | ✓ | ● | ✓ | ✓ |
Hover over any cell for details.
Payment card data protection. Every component in the payment path is in scope.
EU data protection. Data subject rights, consent management, breach notification.
US health information protection. Reasonable safeguards for PHI.
Service organization controls. Security, availability, processing integrity.
EU network and information security directive. Essential entity requirements.
US federal cloud security authorization.
California consumer privacy. Do Not Sell, data subject rights.
Web content accessibility guidelines. Required by ADA, Section 508.
Framework health scores, new insights, industry intelligence. No spam.
WebPulse
The world's first data-driven digital infrastructure intelligence platform. Scoring what matters for the AI era.
by adyog.com →