generated: '2026-07-20' method: searched probe: false url: https://trust.meetmarigold.com/ source: https://trust.meetmarigold.com/ description: >- Marigold — the current owner of the Carnival Mobile / Sailthru Mobile product line — publishes a trust center at trust.meetmarigold.com, linked from the meetmarigold.com footer under "Legal & Compliance". The landing page describes a program "built around industry-leading standards and framework" and offers "externally audited security certification reports", but it does NOT name any certification publicly — no SOC 2, ISO 27001, PCI DSS, HIPAA, FedRAMP or CSA STAR appears on the public page. Named certifications appear to sit behind the gated trust portal. certifications: [] certifications_note: >- Deliberately empty. The trust center exists and is verified reachable, but no named certification is published on the public surface, so none is recorded. Because no compliance program is publicly named, a `Compliance` pointer is NOT wired in apis.yml — only `TrustCenter`. vulnerability_disclosure: none found on the trust center page security_contact: none published evidence: - {source: 'https://trust.meetmarigold.com/', status: 200, keywords: [trust center, corporate security, data privacy, governance, externally audited security certification reports]} - {source: 'https://meetmarigold.com/', note: 'footer links Trust Center under Legal & Compliance'} related_legal: - {name: Marigold Privacy Notices, url: 'https://meetmarigold.com/company/compliance/marigolds-privacy-notices', status: 200} - {name: Services Agreement, url: 'https://meetmarigold.com/company/compliance/services-agreement', status: 200} - {name: Acceptable Use Policy, url: 'https://meetmarigold.com/company/compliance/acceptable-use-policy'} - {name: Anti-Spam Policy, url: 'https://meetmarigold.com/company/compliance/anti-spam-policy'}