Trust centre
Security, compliance and trust at NA1
Certifications, security documentation and sub-processor transparency in one place.
Average incident response time0h
Certified frameworks0
Open critical cases0
Last penetration testScheduled
Certifications and frameworks
◆
SOC 2 Type II
Not yet started. No formal audit engagement is currently underway.
Planned
◈
ISO 27001
Not yet started. No formal certification programme is currently underway.
Planned
✓
UK/EU GDPR Alignment
An internal compliance position, not a third-party certification. Data processing practices are designed to align with UK/EU GDPR requirements.
Aligned
◆
Cyber Essentials
NA1 intends to achieve Cyber Essentials as part of its security assurance roadmap.
PlannedSecurity and compliance documents
| Document | Version | Access | |
|---|---|---|---|
| NA1 Security WhitepaperOverview of platform architecture, encryption and access controls. | 1.0 | Public |
Publishing soon
This document is not yet available for download.
|
| Data Processing AgreementStandard DPA for NA1 Cloud customers. | 1.0 | Request required |
Sub-processors
Third parties that may process customer data on NA1's behalf.
| Name | Purpose | Location | Data categories |
|---|---|---|---|
| Cloud Infrastructure Provider | Application hosting and storage | European Union | Account data, telemetry |
| Email Delivery Provider | Transactional and briefing email delivery | European Union | Contact data |
| Payment Processor | Subscription billing | United States | Billing data |
Found a security issue? See our responsible disclosure policy. For legal documentation see our Data Processing and Privacy pages.