Fraud.net · Trust Center
Fraud Net Trust Center
Trust center
Fraud.net maintains a public trust center documenting SOC 2 Type II, ISO 27001, PCI DSS, HIPAA, GDPR, NIST 800-53, and NTIS compliance.
Fraud PreventionRisk ManagementCommercePaymentsSecurityComplianceIdentityBankingMachine Learning
Trust center: https://www.fraud.net/trust-center
Certifications & Compliance
SOC 2 Type IIISO 27001PCI DSSHIPAAGDPRNIST 800-53NTIS
Source
Trust Center
generated: '2026-09-10'
method: searched
probe: true
source: https://www.fraud.net/trust-center
url: https://www.fraud.net/trust-center
provider: Fraud.net
providerId: fraud-net
certifications:
- SOC 2 Type II
- ISO 27001
- PCI DSS
- HIPAA
- GDPR
- NIST 800-53
- NTIS
documents:
- {name: 'PCI - DSS', access: request, label: 'Get Access'}
- {name: SOC2 Type II Attestation Report, access: request, label: 'Get Access'}
control_families:
- Access Control (Zero Trust, MFA, RBAC, least privilege, segregation of duties, MDM)
- Awareness & Training (induction + annual, role-specific, secure-coding workshops)
- Audit and Accountability (centralized read-only log platform, anomaly monitoring, time sync)
- Assessment, Authorization and Monitoring (internal + independent audits, annual penetration testing, continuous vulnerability scanning)
- Configuration Management (change management, baselines, peer-reviewed build, IDS)
- Contingency Planning (RTO/RPO, daily backups, annual restoration test, quarterly DR test)
- Identification and Authentication (SSO/AD, mandatory MFA, NIST 800-63B passwords)
- Security Incident Response (IR plans, cross-functional teams, post-incident review)
- Maintenance / Media Protection (AWS sanitization + encryption, BYOD policy)
- Planning / Personnel Security (regulatory monitoring, background checks, de-provisioning)
- Risk Assessment / Secure SDLC / Supply Chain Risk Management
- System and Communications Protection (encryption at rest and in transit, TLS 1.2+)
statements:
encryption: >-
"Customer data is encrypted at rest and in transit using industry-standard methods
(e.g., TLS 1.2+)."
hosting: '"We are a 100% cloud-born service provider"; AWS named as the infrastructure provider.'
evidence:
- source: https://www.fraud.net/trust-center
http_status: 200
fetched: '2026-09-10'
keywords: [trust center, soc 2, iso27001, pci dss, hipaa, gdpr, nist 800-53, penetration testing]
security_contact: null
vulnerability_disclosure: null
note: >-
The Trust Center is a real, substantive, public compliance page — it names seven
frameworks and publishes a control narrative — but it carries NO security contact
address and NO responsible-disclosure or bug-bounty channel. The mechanical
probe-security-programs.py pass returned trust=none because it looks at
trust.<domain>/security.<domain>/<domain>/trust and this page is at /trust-center;
this file is the searched upgrade, with the fetched status recorded.
Work with this as data
Every security artifact here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for security posture
4 MCP tools reach this
find_securityBrowse and filter every security artifact in the catalog.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
This security artifact
curl "https://apis.io/api/v1/security/fraud-net-trust-center"
All security posture
curl "https://apis.io/api/v1/security?limit=25"
Discovery needs no key. Ratings and market analysis are Pro.
Get an API key
Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.
A second provider on the same verified email joins the account you already have.