Keyrock · Trust Center

Keyrock Trust Center

Trust center

Keyrock maintains a public trust center documenting SOC 2 Type 2 and DORA compliance.

CompanyMarket MakingLiquidityDigital AssetsCryptocurrencyTradingOTCOptionsMarket DataFinancial Services
Trust center: https://trust.keyrock.com/

Certifications & Compliance

SOC 2 Type 2DORA

Source

Trust Center

keyrock-trust-center.yml Raw ↑
generated: '2026-08-23'
method: searched
probe: true
source: https://trust.keyrock.com/
url: https://trust.keyrock.com/
platform: SafeBase
host_evidence:
  dns: trust.keyrock.com CNAME keyrock.portals.safebase.io
  note: >-
    The subdomain is a SafeBase-provisioned tenant portal named for Keyrock, which is why this is
    recorded as a real trust center rather than a speculative subdomain guess. A direct curl to
    both trust.keyrock.com and keyrock.portals.safebase.io returns an HTTP 403 Cloudflare
    interstitial; the portal contents below were read through a browser-class fetch that the edge
    admitted. This is the ONLY Keyrock-controlled surface this pass was able to read end to end —
    every keyrock.com HTML path, including a nonexistent control path, answers the same 403.
certifications:
- name: SOC 2 Type 2
  status: listed
- name: DORA
  full_name: Digital Operational Resilience Act (EU 2022/2554)
  status: listed
documents_listed:
  policies:
  - Acceptable Use Policy
  - Access Control Policy
  - AI System Development and Evaluation Policy
  - Anti-Malicious Software Policy
  - Asset Management Policy
  - Audit and Accountability Policy
  - Data Classification Policy
  - Information Security Policy
  - Password Policy
  - Physical Security Policy
  - Software Development Lifecycle Policy
  corporate_security:
  - Asset Management Practices
  - Email Protection
  - Employee Handbook
  access: >-
    Documents are listed publicly; retrieval is behind an "Ask for information" request form, the
    standard SafeBase gated-document pattern.
vulnerability_disclosure:
  listed: false
  note: >-
    The trust center names no security contact, no disclosure policy and no bug bounty, and
    keyrock.com serves no /.well-known/security.txt (404). No `Security` pointer is wired into
    apis.yml, because there is nothing published to point at.
evidence:
- source: https://trust.keyrock.com/
  http_status: 403
  http_status_note: Cloudflare interstitial to curl; body read via browser-class fetch.
  keywords:
  - soc 2 type 2
  - dora
  - trust center
- source: dns:CNAME trust.keyrock.com
  value: keyrock.portals.safebase.io

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/keyrock-trust-center"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.