HomeSecurity
SECURITY

A trust platform has to be trustworthy itself.

You hand us the documents that identify your customers and suppliers. Here is exactly how that data is stored, protected, scoped and recorded, stated plainly and without overclaiming.

Data handling

What is stored, and for how long.

Verification needs data, but it does not need to keep everything forever. We hold what is required to verify and monitor an entity, and no more.

What is stored

Entity identifiers, the documents you submit for verification, and the results of each check, kept as the working record for that entity.

Retention periods

Data is retained for as long as an entity is active on your book plus the window needed for audit, then removed on a defined schedule.

Access scope

Access is limited to the people and services that need it for verification, review and monitoring, and nothing broader.

Encryption in transit and at rest

Data moving between your browser, the platform and verification sources is encrypted in transit. Documents and entity records are encrypted at rest in storage.

  • Encrypted connections for every submission and check
  • Encrypted storage for documents and results

Role-based access across review stages

Verification touches several teams, and each should see only their part. Access is scoped by role across the review.

  • Procurement sees what it needs to onboard
  • Finance sees what it needs for payout and credit
  • Compliance and legal see the review and audit view
Accountability

A complete, time-stamped audit trail.

Every verification, override and review decision is recorded with who did it and when. The trail is complete and can be exported when you need to show your work.

  • Every check and decision recorded with a time stamp and actor.
  • Overrides and manual approvals captured, not just automated results.
  • The full trail is exportable for internal review or an external audit.

Compliance posture, stated honestly

We describe our current security posture as it actually is today, and we do not claim certifications or coverage we do not hold. If a control is in progress rather than in place, we say so during evaluation rather than implying otherwise.

Review our security posture in detail.

Book a walkthrough and we will take your team through data handling and access controls directly.