Trust Hub · Package
BaseCloud security package
One request for the customer assurance pack used in enterprise procurement and supplier due diligence.
Typical contents
- Executive security overview
- Infrastructure overview
- Shared responsibility matrix
- Compliance matrix (honest status)
- Data processing information / DPA path
- Subprocessors (environment-specific)
- BCP/DR and incident response summaries
- Vulnerability disclosure reference
- Penetration test summary when performed for scope (NDA)
- Network & physical security overviews
- NIS2 supplier security statement (jurisdiction-specific)
Provider and BaseCloud certificates / SOC reports are included only when they exist for a defined scope — with inheritance clearly labelled.
Request
Compliance requirements vary by jurisdiction, industry, customer configuration and use case. Nothing on this website constitutes legal advice. A provider certificate is evidence for the provider's scope — not automatic certification of the BaseCloud service. Certification is claimed only when evidence is listed as available for the defined scope.