Everything your vendor assessment asks for.
One page, because the alternative was four and two of them unlinked. It includes what we do not hold — a trust page listing only the good news is a marketing page with a padlock on it.
Fresh deployment evidence
AWS target-representative run: PASS. 117,290 verifications, 0 performance errors, 19.47 ms p95, AWS KMS-backed signing and 51.5 second controlled recovery with 0 lost acknowledgements.
This closes the target-environment measurement gap; it does not claim production customer validation, certification or a Well-Architected review. See the full measurement record → Download the standalone verifier →
Published and checkable
Controls, architecture and the security pack as JSON and Markdown.
Open →WCAG 2.1 AA contrast measured across the site, including the 34 failures found and corrected. Screen-reader testing is declared as not done.
Open →Seven, read off what the code calls. The Assurance Runtime itself has none: it runs in your account.
Open →Health evaluated on page load. No uptime history, because nothing records it yet.
Open →What we will and will not assert.
Open →Every claim with its verification method, including results we have withdrawn.
Open →What we do not hold
Listed with the same prominence as everything else. If any of these is a hard requirement for you, you should find out now rather than at contract stage.
Why this page exists in this shape. We audited the site as ten different evaluators. The vendor security assessor — the gate every enterprise deal passes through — was the worst served: seven questions, no single page covering more than three, four pages to visit and two of them not in the navigation. That is an expensive failure precisely because it stays invisible until a deal stalls.
