generated: '2026-08-12' method: searched source: https://trust.later.com/ url: https://trust.later.com/ platform: SafeBase domain_note: >- The trust centre is on later.com rather than mavrck.co because Mavrck rebranded to Later on 2024-01-17 and the product is now sold as Later Influence; mavrck.co itself serves only a rebrand landing page pointing at later.com. This is the same company, not a third party. fetched: '2026-08-12' http_status: 200 certifications: - name: ISO/IEC 27001 status: listed - name: SOC 2 Type 2 status: listed - name: SOC 2 Type 1 status: listed documents: - name: Pentest Report category: reports access: request - name: SOC 2 Report category: reports access: request - name: SOC 2 Type 1 category: compliance access: request - name: Asset Management Policy category: policies access: request - name: Data Classification Policy category: policies access: request - name: Information Security Policy category: policies access: request - name: Risk Assessment/Management Policy category: policies access: request - name: Software Development Lifecycle Policy category: policies access: request sections_published: - Risk Profile - Product Security - Reports - Self-Assessments - Data Security - App Security - AI - ESG - Legal - Data Privacy - Access Control - Infrastructure - Endpoint Security - Network Security - Corporate Security - Policies - Security Grades gaps: - >- Every document is gated behind "Get access" — the certifications are named publicly, but no artifact can be read without a request. - >- Section prose is SafeBase boilerplate ("We are happy to provide details … upon request") rather than substantive published control descriptions. - >- No security.txt and no vulnerability-disclosure or bug-bounty programme is reachable from the trust centre or from either brand's hosts — see security/mavrck-domain-security.yml and well-known/mavrck-well-known.yml.