Our certifications, and how to get the reports
Find the security evidence a reviewer or procurement team may need.
What you get
The evidence a procurement team or a security reviewer will ask for, and where to send them for it.
What we hold
- SOC 2 Type II — Controls tested over a period, not a point in time
- ISO 27001:2022 — Certified information security management system
- GDPR — Data protection compliance, with a data processing agreement available
Alongside these: independent penetration testing, vulnerability assessment, documented incident response, and continuous monitoring of the controls rather than an annual snapshot.
Where to find it
The Coachbar Trust Vault at trust.coachbar.io. AppVentory is a Coachbar product, so security documentation is published at company level — say that when you send the link and it saves a question.
The Trust Vault sets out the certifications, the policies behind them, and the controls in force across legal, corporate security, access control, network security, infrastructure, application security, data security and product security.
Getting the detailed documents
Core documentation is published openly. More detailed material — audit reports and testing results — is available on request through the Trust Vault.
What you've unlocked
Everything a security review needs, without it landing on your desk. Next: Your monthly 15 minutes in Playbooks