Trust Center, the vendor questionnaire answered continuously

Not what we promise, but what is measured.

Security status, compliance reporting and platform availability on one page your CISO can consult directly. The figures come from the automated checks that run every day, not from a report someone assembled by hand.

From a questionnaire by email to a page that is always current

The usual routine in vendor assessment: a spreadsheet with a hundred questions, an answer that is months old, and a report that gets requested all over again the following year.

Now

The questionnaire is filled in and sent

The answer describes the situation on the day it was written. Whatever happens afterwards surfaces at the next round.

With the Trust Center

The status is there, refreshed every day

The checks run automatically, the outcome is on the page, and the date of the latest assessment sits next to it.

Now

A pass rate without weight

Ninety-nine percent sounds reassuring, even when the single open finding happens to be the serious one.

With the Trust Center

A grade weighted by severity

The grade starts at a hundred and deducts points by the severity of what is open. One serious finding weighs more than ten small ones.

Now

Availability by impression

Whether a service held up last month is a matter of memory and incident emails.

With the Trust Center

Availability per service, measured

Uptime per app over the measurement period, from the same monitoring that raises the outage alerts.

A selection from Trust Center

Click a thumbnail for that screen, or the image itself for the full-size view.

What management states about design and operation, with the control environment below it.1 / 5 shown

What the platform is checked on, continuously

The controls are grouped into domains that follow the ISAE 3000 criteria, extended with the requirements that apply to AI functionality.

Security

Access, hardening, encryption and the monitoring around them, with their own grade and trend.

Privacy and integrity

Data protection, the separation between organisations, and the accuracy of what is processed.

Availability

Uptime per service, backups and recovery, measured rather than promised.

AI governance

The requirements of the AI Act for the AI functionality in the suite, including the sub-processors involved.

Transparency you can verify

A transparency portal is only worth something when the reader can see where a figure comes from, and what it does not say.

A statement from management

What management states about the design and operation of the controls, together with the control environment those measures sit in.

A grade with its arithmetic attached

The security grade does not stand alone: the page explains how it is calculated and why it can differ from the pass rate.

The trend, not a single moment

Every assessment round is a point on the graph. A dip is visible, and so is its recovery.

Controls per domain

From AI governance and privacy to confidentiality, data integrity and availability, each control showing the measure and the type of check.

Availability per app

Measured uptime over the period, broken down per service, so you need not rely on a single average.

Release governance

Which gate an app passes before it may reach production, who takes that decision, and how the chain is recorded.

From question to evidence in five steps

1

Start with the statement

What management states about the controls, and the control environment those measures operate in.

Screen 1
2

Read the security grade

The grade with its passed and failed checks, what could not be measured, and which risk was deliberately accepted.

Screen 2
3

Walk through the controls per domain

The status per domain, and the measure behind each control. Searchable, and printable.

Screen 3
4

Check the availability

Uptime over the measurement period, per app, from the monitoring that also sends the alerts.

Screen 4
5

Test the release governance

Which gate a change passes before it reaches you, and how that decision was recorded.

Screen 5

For the CISO, the buyer and the auditor in your organisation

For everyone who has to establish whether a vendor is in control, and would rather look for themselves than wait for a report.

Read only: the Trust Center shows platform-wide status, never data from your own organisation.

Printable: the controls and their status export to pdf for your own vendor file.

Alongside Docs: the Trust Center shows the evidence, the documentation environment describes the design behind it.

The Trust Center at a glance

FrequencyDaily automated checks
GradeRisk-weighted, arithmetic included
TrendOne point per assessment round
AvailabilityPer app, over the measurement period
HostingEuropean Union, one server

Would you like to see the platform status yourself?

The Trust Center is live and refreshed daily. Customers and their assessors are granted access on request.