Revzio — Information Security & Privacy Documentation¶
This directory is the source of truth for Revzio's information security and data privacy policies, standards, and procedures. Documents are authored in Markdown, version-controlled in git, and approved through pull-request review (the PR approval serves as the management sign-off record). Customer-facing copies are exported to PDF and shared under NDA, and (in future) published to a gated Trust Center.
Conventions¶
- Classification: Internal unless marked otherwise. Policies may be shared with customers and auditors under NDA.
- Ownership: Each document names an owner responsible for keeping it current.
- Review cadence: All documents are reviewed at least annually, or on significant change.
- Approval: Recorded in the document's revision table; the merging of the PR that introduces or changes a document constitutes management approval.
Document index¶
Status¶
Initial draft set authored 2026-06-11 to support the CoinDCX third-party security review.
Items marked "(planned)" within documents describe controls on the near-term roadmap; they are
called out honestly rather than overstated. See .dev/tasks/backlog/ for the tracked work to
close those gaps.