Source register
The item remains governed within the internal file.
Guidance by trigger
A questionnaire, an audit, market entry or the maintenance of several engagements each call for distinct decisions and levels of evidence.
Review situationsThe supplier examines its own capability. The European client defines the supplier decision it needs to reach.
Self-assess my organisation →Assess a supplier →Search the platform →Choose an engagement
Start from what needs to be obtained now: an answer, an in-depth review, or a capability tracked over time.
View all engagementsVerify and remediate.
EU exposureClient and technical assessmentEvidence and remediationAll preparations →Keep the current commitments.
Continuous assuranceClient assurance officeProduct security cellAll recurring services →Basis for the conclusions
The same trail links Promise, Policy, Practice, Platform, finding, remediation and controlled sharing.
Review the 4P methodSee fictitious examples to understand the structure and depth of the deliverables.
See examples of deliverables →Terms of engagement
Confidentiality, independence, reversibility and traceability of responsibilities structure the conduct of the work.
Review the firm's rulesHave an international supplier assessed under explicit mandate and sharing rules.
Assess a supplier →Method and evidence
The trust room shares a controlled view of the assurance register without creating a second database or a pseudo-label.
Question addressed
Your European prospects want to review certain policies, certain control statuses and certain attestations before signing. A PDF pack created for each prospect quickly becomes outdated. The trust room follows a different logic: it publishes a view of the assurance register in which each item retains its source, its scope, its review date and its level of verification.
Publishing does not duplicate anything: it only changes the visibility of items that continue to live in the assurance register. If a piece of evidence expires or a status degrades, the trust room reflects it. This continuity makes it credible to a demanding reviewer and sets it apart from a brochure.
Controlled publication
The item remains governed within the internal file.
The client chooses precisely what may be disclosed.
Recipient, confidentiality agreement, duration and restriction.
Opening, downloading, withdrawal and expiry are logged.
Decision enabledYour prospects see a house in order — without your teams having to rebuild a file for every request.
Reading a conclusion
Each shared item remains derived from the internal register. The recipient sees its source, scope, freshness and restrictions; the company retains the authority to withdraw access without losing the history of what was disclosed.
Publication never alters the internal qualification of the item and can be withdrawn without erasing the distribution history.
Implementation
Item by item, you decide what is public, visible under authentication, or restricted under a confidentiality agreement. The restriction attached to each piece of evidence is applied automatically.
A reviewer is given personal, time-limited and logged access. No anonymous link circulates without control.
Each item displays its source, scope, review date and level of verification. "Reviewed by iKNSA" means reviewed — never certified: the wording is locked.
Who consulted what, and when, is visible in the client area. Access can be revoked in one step, even before it expires.
Terms of use
The recipient, the purpose, the duration and the level of detail are decided separately for each item disclosed.
The form is comparable, the substance differs: here every element is backed by the assurance register and carries an explicit verification level. The reviewer distinguishes what is declared, reviewed or verified, rather than receiving a uniform showcase.
What you have decided to place at this level: typically the full policies, certain detailed statuses and restricted evidence. The access log tells you what has actually been consulted.
Yes. Temporary access granted to the client's security reviewer can replace repeated file exchanges and present an organised file.
Continue reading
The external view illustrates what a client can consult without accessing the full internal file or altering its qualification.