Trust Center
Security, privacy, availability, subprocessors, abuse handling, and disclosure-process overview.
Open Trust CenterSecurity contact
Use this page for responsible disclosure, security review requests, abuse reports, and privacy escalation routes. Broader trust documentation lives in the Trust Center and Security Practices pages.
Send suspected vulnerabilities to [email protected]. Include the affected URL or endpoint, reproduction steps, impact, account context, request identifiers if available, and whether any data exposure occurred.
Good-faith reports are reviewed for security impact. AssetLed does not authorize destructive testing, spam, denial-of-service traffic, credential stuffing, social engineering, physical attacks, malware, persistence, or attempts to access another customer's data.
Security testing must use no production-data access and must never attempt to view, change, export, or delete data that belongs to another customer.
Security, privacy, availability, subprocessors, abuse handling, and disclosure-process overview.
Open Trust CenterImplemented authentication, authorization, tenant isolation, data protection, logging, and incident-response controls.
Open Security PracticesPublic provider categories, purposes, data categories, transfer notes, and Mailgun/outreach email separation.
Open Subprocessors