The current source of truth.
Security, privacy, human-authority, AI, accessibility and assurance information — read it right here, with clear status, scope, and limitations. No email, no forms, no lead capture.
Security Controls Overview
How access, encryption, logging and change management are handled.
Independent Security Assessment Summary
Public summary of an independent, point-in-time assessment.
Vulnerability Disclosure Policy
How to report a security issue and what to expect.
Privacy Notice
What personal data is processed, why, and the rights available.
Data Processing & Sub-processors
Categories of processing and the sub-processors used.
Data Retention & Deletion Overview
Default retention periods and how deletion works.
Anti-Surveillance Principles
The monitoring signals ZoikoTime never collects.
Human-in-Command Controls
Why consequential decisions always require a person.
AI Governance Summary
How AI is bounded — and what it never decides.
Model / Provider Data Handling
How model and provider data is handled and bounded.
Accessibility Conformance Summary
Conformance work toward WCAG 2.2 AA, with known items.
Service Status
Live component status and recent incident history.
Governance & Assurance Framework
How governance, evidence and assurance are organized.
Regulator Brief
A due-diligence brief for regulators and reviewers.
Enterprise Approval Pack
A bundle assembled per engagement for approval.
Security Overview (2025)
Prior version, kept for reference only.
Public evidence is open — no work email, company details, or demo request. Controlled and customer-specific items show their access requirement in place. Under Review is provisional; Superseded points to the current version above; withdrawn or expired evidence isn’t shown as current. Trust browsing is informational — never a sales step, and never a trust score.