Infrastructure · Third-party assurance
Third-Party Infrastructure Assurance
Correct wording: qualified infrastructure partners maintain independent assurance for services we use. Incorrect wording: naming partners publicly or claiming our service is certified because a partner is certified.
Controlled disclosure
Public hub shows regions, controls and inherited attestations — not partner identity, facilities or topology.
Evidence chain
Contractual verification
Auditors typically expect: contract / DPA, list of services used, region and data center, subprocessor information, SLA and security commitments, and confirmation that we use services within the provider's certified scope.
Control inheritance matrix → · Request full package →
Compliance requirements vary by jurisdiction, industry, customer configuration and use case. Nothing on this website constitutes legal advice. A provider certificate is evidence for the provider's scope — not automatic certification of the BaseCloud service. Certification is claimed only when evidence is listed as available for the defined scope.