generated: '2026-08-04' method: searched probe: true url: https://www.digitalasset.com/trust-center source: https://www.digitalasset.com/trust-center certifications: - id: iso-27001 name: ISO/IEC 27001 detail: "ISO 27001 certification (2022 standard); a 2025 surveillance certificate is offered." - id: soc2-type2 name: SOC 2 Type II detail: >- SOC 2 Type II assessment. Digital Asset claims to be "the first blockchain startup to successfully complete these security assessments." - id: csa-star name: Cloud Security Alliance STAR (Level 1, CAIQ v4.0.2) detail: Registered with the CSA; public v4.0.2 self-assessment published. - id: cis-securesuite name: CIS SecureSuite Member detail: Digital Asset is a CIS SecureSuite member; CIS Benchmarks referenced as a control baseline. third_party_assessments: - id: hellios-fsqs name: Hellios FSQS detail: Financial Services Qualification System assessment. - id: trusight name: Trusight detail: Trusight assessment; audit report available on request. frameworks_referenced: - Center for Internet Security (CIS Benchmarks) - Cloud Security Alliance - ISO - NIST security_audits: source: https://docs.digitalasset.com/registry/security/audits program: >- Digital Asset publishes a chronological register of completed on-chain and off-chain smart-contract security audits with downloadable executive summaries. audits: - date: '2025-12' auditor: CertiK scope: >- xReserve on- and off-chain components including the DA Registry — Daml Registry & xReserve contracts plus the xReserve backend. report: https://docs.digitalasset.com/assets/xreserve-daml-audit-executive-summary.pdf - date: '2026-07' auditor: CertiK scope: DA Registry off- and on-chain audit status: in progress, publication pending not_found: - {item: PCI DSS, status: not claimed} - {item: HIPAA, status: not claimed} - {item: FedRAMP, status: not claimed} - {item: subprocessor list, status: not published on the trust center} - {item: public status page, status: none found (status.digitalasset.com and status.canton.network do not resolve)} evidence: - source: https://www.digitalasset.com/trust-center http_status: 200 keywords: [iso 27001, soc 2 type ii, cloud security alliance, cis securesuite, trust center] - source: https://docs.digitalasset.com/registry/security/audits http_status: 200 keywords: [certik, audit, security reporting] - source: https://docs.digitalasset.com/registry/security/monitoring http_status: 200 keywords: [monitoring, availability, alerting] notes: >- https://www.digitalasset.com/security redirects (200) to /trust-center, which is the canonical location. x-evidence: fetched: '2026-08-04'