Trust Centre
Built for regulated industries. Transparent by design.
Banks, insurers, telcos, and government deploy Appice on data that can't leave the country and decisions that can't go wrong. Here's how we keep that promise.
Trust Pillars
Eight ways we earn the regulator's trust.
Every page below is the operational answer to a question that comes up in due diligence. Security, compliance, data residency, privacy, sub-processors, deployment, risk — and live system status.
Security
Encryption, network controls, identity, secure development lifecycle, vulnerability management, and incident response.
Read security overview →Compliance
SOC 2, ISO 27001, GDPR, India DPDP, HIPAA-readiness. Certification status and downloadable evidence.
View compliance →Privacy & GDPR
How we process personal data, retention windows, subject access rights, DPA terms, and consent flows.
Read privacy posture →Data Residency
India, GCC, EU regions. Where customer data lives, what crosses borders, and what never does.
View regions →Sub-processors
The third parties Appice uses to deliver the service, what they do, and where they operate.
See list →Deployment & Architecture
SaaS, single-tenant cloud, on-premise. Network architecture, integration points, scale targets.
Read deployment guide →Risk Management
Risk framework, third-party risk, business continuity, disaster recovery, RTO/RPO targets.
View framework →System Status
Real-time uptime, ongoing incidents, scheduled maintenance windows. Subscribe for updates.
Open status page ↗At a Glance
Certifications and posture, in one view.
A snapshot of certifications and posture. Detailed evidence (SOC 2 reports, ISO certificates, penetration test summaries) available under NDA from your account team.
| Area | Standard | Status | Evidence |
|---|---|---|---|
| Information Security | SOC 2 Type II | In progress | Audit underway · Q2 2026 target |
| Information Security | ISO/IEC 27001 | Planned | Gap assessment Q3 2026 |
| Privacy | GDPR (EU) | Compliant | DPA available on request |
| Privacy | India DPDP Act 2023 | Compliant | Indian data fiduciary obligations met |
| Healthcare | HIPAA-ready | Available | BAA on request for healthcare customers |
| Payments | PCI-DSS | Out of scope | Appice does not store cardholder data |
| Banking | RBI cybersecurity framework | Aligned | Deployed at 10+ Tier-1 Indian banks |
Get Started
Need a deeper review?
Security questionnaires, custom DPAs, on-site audits, evidence packs. Your account team can route to the right specialist.
Request a security review