generated: '2026-07-19' method: searched source: openapi/gitar-openapi-original.json docs: https://trust.gitar.ai/ standards: - id: http-bearer-auth conforms: true evidence: openapi securitySchemes bearerAuth type http scheme bearer - id: oauth2 conforms: false evidence: no oauth2 securityScheme declared; API uses opaque Bearer API tokens - id: rfc9457-problem-details conforms: false evidence: error responses use a custom envelope (ResponseFailure {error_code, message}), not application/problem+json - id: openapi-3.1 conforms: true evidence: spec is OpenAPI 3.1.0 - id: soc2 conforms: true evidence: Gitar publicly states SOC 2 compliance (homepage + Trust Center at trust.gitar.ai) - id: iso-27001 conforms: true evidence: Gitar publicly states ISO 27001 certification (homepage + Trust Center) - id: gdpr conforms: true evidence: Gitar publicly states GDPR compliance (homepage + Trust Center)