ASUME

Trust Center

Policies

Public policies and measures that govern use of the Service. Internal policy documents that are not yet published are listed as planned or in progress.

Acceptable Use Policy

The Acceptable Use Policy sets out permitted and prohibited uses of the Service. It restricts abuse, unauthorized access, harmful automation, and other activity that would interfere with the Service or with other customers.

Customers are responsible for how they use ASUME and for the information they submit. Serious or repeated violations may result in suspension or termination as described in the policy.

Security Measures

Security Measures document the technical and organisational measures ASUME applies to the Service, including identity and access control, encryption, logging, vulnerability handling, and incident response.

These measures describe the current control set. They are not a certification, attestation, or warranty, and they evolve as the Service and the security program change.

Privacy Policy

The Privacy Policy explains how ASUME processes Personal Data where it acts as a controller, including Personal Data from public sources and Personal Data related to use of the Service.

Where ASUME processes Customer Data as a processor, the Data Processing Agreement applies. The Privacy Policy also covers retention, international transfers, and the rights available to individuals.

Policy review cycle

ASUME is establishing a documented cycle for reviewing and updating public policies and internal standards. Published legal documents are updated when the Service or the law changes; a fixed annual review calendar is still being defined.

Until that cycle is published, treat the documents in the Trust Center as the current versions.

Vulnerability management standard

A standalone vulnerability-management standard is a roadmap item. Current handling — including how ASUME tracks, prioritises, and remediates vulnerabilities — is described in Security Measures.