GRC Oversight

Trust Center

Share your security posture, on your terms

A Trust Center is a public page where a company shares its security overview, framework status, and assurance documents. Sensitive documents stay gated behind a request and a non-disclosure agreement, so prospects can self-serve while you keep control.

How it works

1

Publish your profile

Admins configure a public page: security overview, framework status, and contact. Only what you mark public is shown.

2

Visitors request docs

Open documents download directly. Gated documents (e.g. a SOC 2 report) require a short request form.

3

NDA before access

Requesters accept your NDA terms. The acceptance (name, IP, and timestamp) is recorded as evidence.

4

You approve

Your team reviews each request and approves or denies it. Approved, NDA-accepted requesters get a time-limited link.

Looking for a specific company?

Trust profiles live at /trust/<company>. Ask the company for their Trust Center link, or find it in their security or footer navigation.