Where your workspace data lives
The active workspace is stored in your browser. TrustPack does not run a hosted customer database for your security answers, vendor list, evidence notes, or questionnaire drafts.
Customer security guide
TrustPack is designed as a local-first security evidence workspace. It helps you organize policies, questionnaire answers, evidence notes, and readiness reports without sending your workspace to TrustPack infrastructure.
Documentation aid only. TrustPack is not a legal opinion, compliance certification, security audit, or guarantee of protection.
The active workspace is stored in your browser. TrustPack does not run a hosted customer database for your security answers, vendor list, evidence notes, or questionnaire drafts.
Browser storage can be cleared, lost, or unavailable on another device. Export a local JSON backup after meaningful changes and keep a copy somewhere you control, such as an approved company drive.
When configured, Google Drive export sends the backup directly from your browser to your Google account. TrustPack does not receive that file. Review the Google permission screen and only approve the export if it matches your expectations.
Review every generated statement, attach evidence where needed, remove internal-only notes, and avoid claiming a control is complete unless it is true and supported by evidence.
Use TrustPack on a trusted device, keep your browser profile protected, enable MFA on your cloud accounts, export backups after edits, and store exported files according to your company retention and sharing rules.