---
title: INTYGIO Trust Center
url: https://intygio.com/trust
generated: true
---

# INTYGIO Trust Center

Security is not a feature — it is the product. Every Digital Product Passport we issue must remain verifiable for decades, across EU member states, and through the post-quantum transition. Every claim on this page is verifiable.

## Compliance
- eIDAS
- NIS 2 Directive
- GDPR
- NIST CSF 2.0

Implemented according to
- ISO/IEC 27001:2022 Controls mapped to Annex A; see the control register.
- SOC 2 Type II Built to the AICPA Trust Services Criteria.

## Resources
- ISO/IEC 27001:2022
- SOC 2 Type II
- Internal test pipeline summary
- Third-party penetration test attestation

## Controls
- Documented cybersecurity strategy
- Supply chain risk management
- Effectiveness assessment of security measures
- + 1 more
- Production asset inventory
- Risk assessment cadence
- Data classification and inventory
- eIDAS-aligned electronic seals on every passport
- Post-quantum-ready signatures
- Key management policy
- + 7 more
- Continuous vulnerability scanning
- Append-only audit chain per passport
- Trust-path integrity monitoring
- + 1 more
- Documented incident response runbook
- Customer notification commitments
- Emergency revocation drill
- + 1 more
- Business continuity and disaster recovery plans
- Customer data backup and restore
- Post-incident improvement loop
