generated: '2026-09-07' method: searched source: https://aoxlabs.com/ trust_center_url: null trust_center_note: >- ADRO runs no dedicated trust center or security portal — no trust.adro.com, no trust.aoxlabs.com, no compliance page. The certifications below are published as a section on the AOX landing page, with the TISAX assessment document served directly from the site. certifications: - name: ISO/IEC 27001:2022 status: certified scope: Adro Digital Service Development and Operation valid_from: '2026-06-24' valid_to: '2029-06-23' document: https://static.aoxlabs.com/_static/landing/images/certifications/iso-iec-27001-adro.png document_status: 200 - name: TISAX status: assessment completed scope_id: S8PP81 objectives: - High Availability - Confidential valid_to: '2029-05-26' document: https://aoxlabs.com/documents/certifications/tisax-assessment-s8pp81.pdf document_status: 200 detailed_results_access: Authorized TISAX participants only. published_statement: >- "Security is built into how AOX is developed and operated. ADRO's digital service development and operations are certified to ISO/IEC 27001:2022. ADRO has also completed a TISAX assessment covering its automotive information-security scope." — https://aoxlabs.com/ not_found: soc2: false iso27017: false iso27018: false pci_dss: false hipaa: false fedramp: false gdpr_dpa_published: false subprocessor_list: false pentest_report: false vulnerability_disclosure: published: false detail: >- No security.txt on any host, no /security or /vulnerability-disclosure page, and no bug-bounty program on HackerOne, Bugcrowd or Intigriti. probe-security-programs.py returned vdp=none. Consequently NO `Security` pointer is emitted in apis.yml — there is no disclosure surface to point at. The only published security contact of any kind is the general support address support@adro.com. infrastructure: hosting: AWS hosting_evidence: '"Powered by AWS infrastructure" — https://aoxlabs.com/ footer.' meshing_partners: - HELYX - CF-MESH+