Skip to content

Compliance & Security Alignment

This page describes TruCore alignment posture for enterprise security reviews and procurement workflows.

Last updated: 2026-04-06

Alignment with Common Frameworks

ATF is designed in alignment with common security control objectives. TruCore does not currently claim certification under these frameworks.

  • SOC 2 principle alignment concepts for Security, Availability, and Confidentiality.
  • ISO 27001 control alignment concepts.
  • NIST risk management alignment concepts.

Data Handling Model

  • No custody of customer funds.
  • No financial account storage.
  • No PII required for simulation.
  • Aggregated metrics only for public reporting.

Risk Boundary

ATF enforces policy before execution. It does not custody funds, sign transactions, or hold user assets.

Audit & Evidence

  • Deterministic receipts for policy decisions and outcomes.
  • Versioned releases with public release notes.
  • Public changelog for traceable product changes.
  • Signature verification path for ATF whitepaper artifacts.

Additional references: /security/overview /process /changelog