Trust center
Trust, security, and data diligence.
SourceX sources, contracts and manages enterprise data licensing transactions. This page lists only controls we have verified, and how buyers can request documentation.
Security overview
Nothing is delivered without supplier approval, an executed agreement and explicit authorization of buyer access. Files are stored privately and released through short-lived links.
Detailed control descriptions are being verified and will be listed here once reviewed.
Privacy policy
How we collect and use personal information on this site and in our services.
Subprocessors
Our subprocessor list is under review. Request it below and we will share the current version.
Security contact
Use the “Contact our security team” form below. Requests go to a monitored SourceX inbox and are answered within 2 business days.
Our security roadmap
SOC 2 Type II
Report not yet issued
ISO/IEC 27001 certification
Certification not yet issued
These initiatives are in progress. SourceX has not yet received a SOC 2 Type II report or ISO/IEC 27001 certification.
Procurement resources
Security questionnaire responses, business continuity overview, incident escalation process, contract templates and a DPA where applicable are shared privately after review. Only approved materials are released.
Dataset diligence packets are prepared per dataset. Rights, privacy processing and quality differ between datasets.
Request documentation
Sensitive reports and internal policies are released only to signed-in accounts, after a SourceX administrator approves the request. Access links expire.