Trust Center
Security, privacy, compliance, accessibility, AI governance, and data controls for the production OASIS platform. Each section identifies what is implemented, what customers configure, and what remains in progress.
Security
Access control, tenant isolation, encryption, audit logs, and recovery controls used by OASIS.
Privacy
The data OASIS processes, how it is used, and the controls available to customers.
Compliance
Current assurance status, available evidence, HECVAT preparation, and certification roadmap.
Accessibility
Product accessibility, content checks, current testing, and VPAT or ACR status.
AI Governance
Tenant controls, human review, model records, traceability, and risk testing for AI features.
Data Retention
Customer retention schedules, legal holds, exports, disposition review, and deletion workflows.
Incident Response
How OASIS detects, contains, communicates, resolves, and reviews incidents.
Subprocessors
Providers that support application hosting, data storage, email delivery, and optional AI features.
Vulnerability Disclosure
Scope, safe testing rules, reporting instructions, and the OASIS response process.