ZoikoDigital
Evidence Center

Procurement and
legal resources, governed and
current

Discover trusted documentation, request controlled resources, and understand how ZoikoTime reviews and versions the evidence your due diligence needs.

Evidence Center

The Evidence Center gives procurement, legal, security, and privacy teams a governed way to find, request, and track the documentation ZoikoTime maintains — with clear access classes, versioning, and human review at every step.

Evidence Center

Diligence, done together

Every document in the registry is built for the conversation that follows — reviewed with your team, not handed over cold.

Capability Highlights

Everything due diligence actually needs

Resource registry

A single, searchable index of current documentation across security, privacy, legal, and accessibility.

Guided requests

A structured flow routes controlled and customer-specific resources to the right reviewer.

Version tracking

Every document carries a version, effective date, and change history — nothing goes stale silently.

Governed access

Public, controlled, and customer-specific tiers — approvals stay with authorized reviewers, never automatic.

Why Governed Evidence Matters

Diligence deserves current, reviewed answers —not a badge wall

Real reviewers stand behind every release. Here's why that matters more than a longer document list.

Governed Evidence

Stale documents create risk

An outdated security pack or expired DPA slows procurement and creates real exposure. Version currency is a release gate, not an afterthought.

Access should match sensitivity

Not every document belongs in a public folder. Controlled and customer-specific tiers keep sensitive evidence reviewed before release.

Automatic approval isn't trust

Every controlled or customer-specific request passes through an authorized reviewer — this page never implies instant or automatic access.

Procurement Evidence Lifecycle

From request to reviewed access

Discover

Browse the resource registry by category and access class

Buyer

Request

Submit a guided request with organization and purpose

Buyer

Review

Authorized reviewer confirms eligibility and access class

ZoikoTime

Release

Approved evidence delivered with version and expiry noted

ZoikoTime

Track

Updates and re-reviews surface automatically to requestors

Buyer + ZoikoTime

Evidence Governance Center

The dashboard behind every request

Production-faithful, shown here with synthetic data — the same registry, queue, and audit trail your reviewer works from.

Governance Center · Full view

Role: Procurement Reviewer

14

Requests in queue

3 unassigned

4.2 days

Avg. review time

Rolling 30 days

9

Packs due for review

Next 60 days

100%

Access-tier compliance

Last audit

Queue ItemRequestorReviewerStatus

Sub-processor List

Controlled

Legal · Meridian+M. AlvarezAssigned

Pen Test Summary

Customer-specific

Security · AsteraUnassignedUnassigned

Accessibility Conformance Report

Public

Procurement · NorthbridgeDelivered

Review Calendar

Security pack re-reviewSep 12
DPA annual reviewOct 3
Accessibility audit refreshNov 20

Audit Trail

Access granted · Pen Test SummaryReviewer: M. Alvarez
Version updated · DPA v4.1Owner: Legal
Request denied · unscoped NDAReviewer: T. Byrne

Resource Categories

Organized by the diligence teams that needthem

Security & Architecture

System architecture overview, security controls summary, penetration test summaries.

Privacy & Data Handling

Data processing addendum, sub-processor list, data map, retention overview.

Legal & Contract

Master service agreement template, order form guidance, acceptable-use policy.

Accessibility

WCAG 2.2 AA conformance statement and assistive-technology testing summary.

Governance & AI

Human-in-command doctrine, deterministic classification overview, AI governance summary.

Incident & Support

Responsible disclosure policy, support SLAs, status-page and incident-communication overview.

Access Classes

Access matches sensitivity — not seniority

Public

Open documentation

Available to anyone without a request — no login or NDA required.

Data Processing Addendum
Accessibility Conformance Statement
Anti-Surveillance Principles
Controlled

Reviewed on request

Released after a guided request and reviewer confirmation of purpose and organization.

Security controls summary
Sub-processor list
System architecture overview
Customer-specific

Gated by agreement

Released only under an active NDA or customer agreement, scoped to that relationship.

Penetration test summary
SOC 2 bridge letter
Contract-specific addenda

Resource Details & Metadata

Every document carries the same evidence fields

DocumentAccess classVersionLast reviewed
Data Processing AddendumPublicv4.1Aug 1, 2026
Security Controls SummaryControlledv3.2Jul 14, 2026
Sub-processor ListControlledv2.4Jul 22, 2026
Penetration Test SummaryCustomer-specificv1.0 (current cycle)Jun 30, 2026
Accessibility Conformance StatementPublicv1.1May 18, 2026

Version and review-date fields shown here are illustrative examples from the governed registry.

Guided Resource Request Flow

A structured request — not a black box

1

Identify the resource

Search or browse the registry by category, access class, or keyword.

2

Confirm organization & purpose

Provide your organization, role, and the evaluation purpose the resource supports.

3

Route for review

Controlled and customer-specific requests are routed to an authorized reviewer — never released automatically.

4

Receive scoped access

Approved resources are delivered with version, effective date, and any applicable NDA scope noted.

5

Stay current

You're notified when a resource you received is updated or re-reviewed.

Due Diligence Workspace

Track every request in one place

Once submitted, requestors see live status, assigned reviewer, and delivered evidence — no separate email thread to track.

My Requests
Astera Retail · Procurement

Security Overview Pack

Submitted: Aug 2

In review

Awaiting reviewer assignment

Master Service Agreement Template

Submitted: Jul 29

Delivered

v2.0 · valid through renewal

Pen Test Summary

Submitted: Jul 25

Needs NDA

Legal team to countersign

Legal & Contract Boundaries

What this page is — and what it is not

A Governed Evidence Center

This page provides documentation access, not legal advice, guaranteed access to any document, unsupported certifications, compliance guarantees, or employee monitoring capability of any kind.

Not automatic approval

Controlled and customer-specific resources always pass through human review — no request is approved by default.

Not legal advice

Templates and summaries support your own legal review; they do not substitute for counsel in your jurisdiction.

Not a certification claim

ZoikoTime lists only certifications and attestations currently held, with evidence, and never implies coverage it doesn't have.

Not employee monitoring

Nothing in this Evidence Center, or in ZoikoTime itself, includes screenshots, keystroke capture, or productivity scoring.

Trust Resources

Security, privacy, and accessibility — in plain language

Security

Security

Architecture, access control, and incident response — with current attestations linked where held.

Visit Security →
Privacy

Privacy

Data minimization, the negative capability set, and the current data map.

Visit Privacy →
Accessibility

Accessibility

WCAG 2.2 AA conformance approach and testing methodology.

Visit Accessibility →

Evidence Currency & Version Timeline

Nothing goes stale without a record

Aug 1, 2026

Data Processing Addendum updated to v4.1

Clarified sub-processor notification timelines; no change to processing scope.

Jul 22, 2026

Sub-processor list revised

Added one new infrastructure sub-processor; customer notification sent per DPA terms.

Jul 14, 2026

Security Controls Summary re-reviewed

Annual review completed; no material changes to controls.

May 18, 2026

Accessibility Conformance Statement published

First public statement following completed WCAG 2.2 AA testing cycle.

Enterprise Trust Panel

Built for the way enterprise diligence actuallyworks

One registry, not scattered PDFs

Procurement, legal, security, and privacy teams all work from the same governed source of truth.

Reviewer accountability

Every controlled release is tied to a named reviewer and a timestamped decision — visible in the audit trail.

Renewal-ready

Version history and review calendars mean renewal diligence starts from current evidence, not a fresh request.

Enterprise Trust Panel

Questions

Procurement & legal resources — answered