generated: '2026-09-02' method: searched source: https://verily.com/security-trust name: Verily Life Sciences — security and trust page url: https://verily.com/security-trust http_status: 200 certifications_named: [] certification_count: 0 summary: >- Verily publishes a Security & Trust page on its own domain. It is a real page and it is live, but it names no certification. It states that Verily "adheres to several industry-recognized frameworks, standards, and regulatory requirements" and that independent cybersecurity and assurance firms assess its compliance, then directs prospects and customers to info@verily.com for attestation reports or product architecture white papers — which may require an NDA. There is no trust portal, no downloadable SOC 2 or ISO certificate, and no self-serve document request. contact: info@verily.com nda_required_for_reports: true portal: none gaps: - No certification named publicly (SOC 2, ISO 27001, HITRUST, FedRAMP, PCI, none). - No trust portal (trust.verily.com does not resolve). - No sub-processor list, no security white paper linked from the page. - No security.txt on any Verily host. note_on_pointer: >- A `TrustCenter` pointer is emitted in apis.yml because the page genuinely exists and is served by Verily on its own domain. A `Compliance` pointer is NOT emitted, because compliance_published asks whether the provider has published a compliance program, and naming zero certifications is not publishing one. related_privacy_surfaces: - url: https://verily.com/privacy-policy status: 200 - url: https://verily.com/consumer-health-data-privacy-policy note: Consumer health data privacy policy (Verily Me / Lightpath). - url: https://verily.com/me+lightpath/hipaa-privacy note: HIPAA privacy notice for the consumer products, not for Workbench. - url: https://verily.com/pre-platform/ai-impact-and-safety note: AI impact and safety statement for the Pre platform.