Trust at DarkCoders

Sovereign cyber by design. Defense-grade. Zero-trust. Hash-chain-anchored.

Compliance posture

SOC 2 Type II ISO 27001:2022 NIST CSF 2.0 NCA ECC 2.0 PCI DSS 4.0 GDPR HIPAA

Current control coverage by framework:

Sub-processors

Current list of all third parties processing customer data on our behalf:

View sub-processor list →

30-day notice before adding any new sub-processor.

Security architecture

Data residency

Pick your region at signup. Cross-region data movement is enforced at the storage layer (Z.329 Data Residency Enforcement).

Responsible disclosure

Found a vulnerability? Report it confidentially via our security.txt:

We acknowledge within 24 hours and credit reporters in our security advisories.

Audit access

Enterprise + MSSP customers receive read-only auditor portal access on request:

Request attestation →

Bug bounty

Coming Q3 2026. Will run on HackerOne with tiered rewards:

Live operational data

Status page: status.darkcoders.com

Open API: api.darkcoders.io

Audit chain head: tamper-evident block emitted every action