The Brandtech Group · Trust Center

The Brandtech Group Trust Center

Trust center

The Brandtech Group maintains a public trust center documenting SOC 2 Type II compliance.

CompanyMarketingAdvertisingGenerative AICreativeMarketing TechnologyRetail MediaAnalyticsAgency
Trust center:

Certifications & Compliance

SOC 2 Type II

Source

Trust Center

the-brandtech-group-trust-center.yml Raw ↑
generated: '2026-08-30'
method: searched
source: https://trust.trypencil.com/
note: >-
  The Brandtech Group publishes no trust center on its own corporate domain
  (trust.thebrandtechgroup.com does not resolve). The group's only public trust
  surface belongs to Pencil, the generative-AI creative platform The Brandtech
  Group acquired outright in June 2023 and operates as a wholly owned brand, so
  the different domain is expected and is recorded here on that basis.
trust_centers:
- name: Pencil Trust Center
  url: https://trust.trypencil.com/
  operator: Pencil (The Brandtech Group)
  platform: Vanta
  http_status: 200
  content_type: text/html
  machine_readable: false
  rendering: >-
    Client-side rendered Vanta trust-center application (assets.vanta.com,
    app.eu.vanta.com document store). The certification list, subprocessor list
    and document requests are fetched by JavaScript after load, so the control
    inventory is not readable from the served HTML.
  faq_url: https://trust.trypencil.com/faq
certifications:
- name: SOC 2 Type II
  status: certified
  scope: Pencil platform
  evidence: https://trypencil.com/llms.txt
  evidence_quote: 'Pencil is SOC 2 Type II certified.'
  report_access: gated
  note: >-
    The report itself is behind the Vanta trust-center document request flow;
    no public attestation letter or audit summary is served anonymously.
commitments:
- name: IP indemnification
  scope: Enterprise (Pro) customers
  evidence: https://trypencil.com/llms.txt
- name: No-train policy
  detail: Customer data is never used to train models.
  scope: Enterprise (Pro) customers
  evidence: https://trypencil.com/llms.txt
- name: Regional data compliance
  detail: EU, US and APAC data regions.
  evidence: https://trypencil.com/llms.txt
- name: Role-based access controls
  evidence: https://trypencil.com/llms.txt
- name: Data ringfencing and AI governance controls
  scope: Pro plan
  evidence: https://trypencil.com/pricing
gaps:
- No public security.txt on thebrandtechgroup.com or trypencil.com (both 404).
- No named security contact or vulnerability-disclosure policy found.
- No bug bounty program found on HackerOne, Bugcrowd or Intigriti.
- Certification inventory is JavaScript-rendered, so no machine-readable evidence file exists.
evidence:
- url: https://trust.trypencil.com/
  status: 200
- url: https://trust.trypencil.com/faq
  status: 200
- url: https://trypencil.com/.well-known/security.txt
  status: 404
- url: https://thebrandtechgroup.com/.well-known/security.txt
  status: 404

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/the-brandtech-group-trust-center"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.