Trust Center
This is the Negative Zero Trust Center. We build our autonomous response platforms and agent architectures strictly according to recognized safety standards and verified threat models.
Negative Zero is a member of the Claude Partner NetworkCompliance
Current active security postures, verified certifications, and operational audit telemetry.
Cyber Essentials & Cyber Essentials Plus
Verified Certification BodyAccredited under IASME certification guidelines. Our endpoints, public gateways, and systems are continuously verified.
IASME Cyber Assurance L1 and L2
Verified Certification BodyComprehensive information assurance standard, mapped against ISO 27001 and continuously verified by our autonomous agents.
ISO 27001
Alignment In ProgressOur Information Security Management System (ISMS) is being built to ISO/IEC 27001:2022 standards.
Vulnerability Disclosure
Review our vulnerability disclosure policy (VDP), contact information, and safe harbor terms.
Vulnerability Disclosure Policy (VDP)
We operate a responsible disclosure pipeline for security researchers and platform operators. If you discover a potential vulnerability in our infrastructure, APIs, or reasoning agent constraints, report it directly to our security team.
Guidelines & Safe Harbor
- • Do not exploit the vulnerability (e.g. download more data than necessary to demonstrate the flaw).
- • Do not disrupt our services, compromise client data, or perform denial of service (DoS) attacks.
- • Allow us reasonable time to inspect, verify, and resolve the issue before public disclosure.
- • We commit to not pursuing legal action if researchers follow these guidelines in good faith.
Security Response Contact
Email our incident response team directly with PGP-encrypted findings.
Penetration Testing
Independent penetration test reports and remediation status for our infrastructure and agent platform.
These documents are gated. Submit a request and our security team will grant access.
Product Roadmap
Our upcoming certifications, control enhancements, and platform hardening milestones.
These documents are gated. Submit a request and our security team will grant access.
Legal & Privacy
Review our data processing policies, sub-processor registry, and UK GDPR data subject protections.
Privacy Notice & Sub-Processor Disclosures
Negative Zero is committed to complete transparency regarding our data handling architectures, sub-processor engagements, 30-day transient AI chat retention, and your rights under the UK GDPR and Data Protection Act 2018.
