Early-stage status
TrustFlare is an early-stage startup. Information about the operating and contracting party, and documents for customer due diligence, are available on request at [email protected] before a paid engagement begins.
Company particulars and deployment-specific commitments should be confirmed in writing before procurement or processing customer data.
Data protection
Our Privacy policy describes the website data flows and request channels. Hosted processing requires appropriate contractual terms and a deployment-specific review of providers, locations and retention. The Data processing terms page sets out the points to agree.
We do not claim that using TrustFlare automatically makes a customer compliant with GDPR or another legal framework.
Certification status
TrustFlare does not hold an ISO/IEC 27001 certificate or a SOC 2 report. Certifications and reports held by a supplier apply to that supplier and their stated scope. See Certification status.
What to request
- Operating and contracting-party information relevant to the engagement.
- Deployment architecture, data categories, hosting locations and provider schedule.
- DPA, retention and deletion terms, support access and incident contacts.
- Available security evidence and the status of any requirement still under development.
Your organization’s responsibilities
Customers remain responsible for a lawful use case, informing users, choosing proportionate device checks, managing administrator access and reviewing the impact of access decisions. Self-hosting provides control over infrastructure but does not eliminate these responsibilities.