A controlled security review experience

Publish security proof buyers can actually review.

Create an accurate public trust center, control sensitive resources, and handle review requests without emailing attachments back and forth.

Start at your-company.trustcenters.com with no payment required. Upgrade for a custom domain and a customer-branded reviewer experience.

Published

Security profile

Security at Northstar

Published practices and approved resources for security review.

Overview

Company overview

Security practices

Review resources

Contact

Review resources

Approved for disclosure

SOC 2 reportRequest required
Information security policyPublic
Architecture overviewPortal only

01

Explicit disclosure

Every resource is marked public, request required, or portal only.

02

Versioned publishing

Review a private draft before creating the next public version.

03

Controlled response

Keep access requests and shared material connected to the review.

Start free, upgrade when it matters

Publish first. Add your brand as reviews grow.

The free plan is a real trust center, not a temporary trial. A paid plan changes how customers reach and recognize it.

Free

Branded platform address

Publish at your-company.trustcenters.com with TrustCenters.com branding, controlled resources, access requests, and secure portals.

Growth and Enterprise

Your domain and your brand

Use a verified domain you control and lead with your company branding across the public trust center and review workflow.

How it works

From approved information to a controlled review.

TrustCenters keeps publishing and private sharing distinct, so reviewers can find what is available without exposing what is not.

01

Publish

Assemble approved company information and resources in a private draft. Preview the exact reviewer experience before publishing a version.

02

Control

Choose whether each resource is public, requires a request, or stays inside a dedicated portal. Sensitive material remains controlled.

03

Respond

Review access requests, share approved resources through a portal, and keep the activity connected to the security review.

One review workspace

The pieces your security review actually needs.

Each capability supports the same controlled disclosure workflow. Nothing on this page implies certification, audit readiness, or third-party assurance.

Public trust center

Give reviewers a clear, current starting point for your security program.

  • Company and security overview
  • Published practices and assurances
  • Searchable resources and answers

Controlled resources

Set disclosure behavior resource by resource instead of relying on one broad access rule.

  • Public downloads
  • Request-required material
  • Portal-only sharing

Versioned publishing

Keep public content separate from work in progress and retain the history of published versions.

  • Private draft editing
  • Exact preview before release
  • Immutable publication versions

Review requests

Receive and manage requests for sensitive material from the same product that presents it.

  • Structured access requests
  • Approval workflow
  • Request history

Secure sharing

Create dedicated portals for approved recipients and keep document access bounded.

  • Recipient-specific portals
  • Expiration and revocation
  • NDA acknowledgment workflows

Review operations

Keep recurring security-review work close to the resources used to answer it.

  • Questionnaire workspace
  • Resource validity dates
  • Custom domain configuration

Disclosure by design

Public when it should be. Controlled when it should not.

Choose the audience for each approved resource. Public information is immediately reviewable. Sensitive material stays behind a request or a dedicated portal.

Public

Visible to anyone viewing the published trust center.

Request required

A reviewer submits a request before access is considered.

Portal only

Shared only through a controlled portal selected by your team.

Questions

Clear answers before you publish.

Need help with a product or account question? Email hello@trustcenters.com.

What is a trust center?

A trust center is a published security profile where customers and prospects can review approved information, practices, answers, and resources in one place.

Does everything have to be public?

No. Each approved resource can be public, available by request, or limited to a dedicated portal. Your team chooses the audience before publishing.

How are updates published?

Changes remain in a private draft until an authorized team member previews and publishes them. Publishing creates a versioned snapshot for the public trust center.

Can we use a custom domain?

Yes. Every Free workspace includes a your-company.trustcenters.com address. Growth and Enterprise add a verified custom domain and a customer-branded review experience.

Does TrustCenters certify our security program?

No. TrustCenters helps you publish approved claims and share supporting resources. It does not provide certification, an audit opinion, or a guarantee of security.

Start with an accurate profile

Give every reviewer one trustworthy place to begin.

Build the draft, verify what will be disclosed, and publish only when you are ready.

Start free