Commitment to Competence — Security awareness training and background checks
Owner: CEO
Trust Center
Security, legal, procurement, ownership, and investor review should all see the same current evidence.
Live control status and honest evidence for the people evaluating whether Sentus is ready to operate inside a real portfolio.
Status reflects the current state as of the last registry update. Partial means partial. We do not claim active SOC 2 certification on this page, and ownership and procurement teams should be able to see that plainly.
Owner: CEO
Owner: CEO
Owner: engineering
Owner: CEO
Owner: engineering
Owner: engineering
Owner: engineering
Owner: engineering
Owner: engineering
Owner: engineering
Owner: CEO
Owner: engineering
Owner: engineering
Owner: engineering
Owner: engineering
Owner: engineering
Owner: engineering
The public trust center groups the operating procedures legal, security, and procurement reviewers usually ask to see first.
NIST 800-61r2-aligned. Four severity tiers, six phases, per-incident containment playbooks, and tabletop cadence.
Quarterly recertification enumerates admin users, roles, and last-login. CEO sign-off required each cycle.
Maps database tables to business entities. Used during quarterly access reviews and external audit prep.
Blameless five-section template with mandatory timeline, root cause, contributing factors, and prevention fields.
These public resources establish the current baseline. Buyer-specific questions can then be handled against the workflows and evidence actually in scope.
Company-scoped access, sign-in controls, change control, and the current compliance posture.
The implemented, partial, planned, and not-applicable controls shown on this page.
How Sentus uses information and the categories of service providers involved in delivery.
Straight answers to the security and legal questions buyers commonly raise first.
Sentus uses AI in communications and operational assistance. The controls and evidence available for review depend on the workflow being evaluated. Buyers should evaluate automated review controls against the workflows included in their own implementation.
Sophia assists - she does not decide. Final consequential housing decisions remain with the property manager, and the canonical public description of AI use lives in the Privacy Policy.
Final consequential housing decisions remain with the property manager.
The Privacy Policy explains where AI is used and how to ask for a person instead.
Access is evaluated against the authenticated company and role context.
Buyers should verify the controls that apply to the workflows included in their evaluation.
The trust page is not a generic security brochure. It is the public evidence layer that lets buying committees evaluate control, governance, and implementation risk.
Audit-ready workflow evidence across the public Trust Center and procurement routes
AI use and human decision-making described through the canonical Privacy Policy
Company-scoped access controls and OTP-based sign-in referenced consistently across the website
SOC 2 posture described exactly as it is: aligned controls with an auditor not yet engaged — never presented as certified
Ownership and procurement can review the same evidence stack before the deeper diligence call begins
Security reports and legal or compliance inquiries are reviewed through the contact paths below.
To report a vulnerability, email security@sentus.ai with subject [VULN]. Please do not disclose publicly before we have addressed it.