Responsible security claims
Security and Compliance Details Should Be Published Only When Formally Verified
Security, backup, hosting and compliance details should be communicated only where they are formally defined and verified. Public content must not claim certifications, encryption specifications, uptime percentages, backup schedules, disaster-recovery metrics, data-residency guarantees or compliance status unless approved.
No Unverified Certifications
Certification or compliance claims should appear only after formal verification and approval.
No Unverified Technical Guarantees
Do not publish encryption specifications, uptime percentages, backup schedules or disaster-recovery metrics unless formally approved.
No Infrastructure Provider Disclosure
The underlying cloud infrastructure provider is intentionally not disclosed on the public CRM website.