Penneo Trust Center

At Penneo, we prioritize the security and privacy of our customers.

EU-approved Qualified Trust Service Provider (QTSP)

EU trust mark

Certified under ISO/IEC 27001:2022 and ISO/IEC 27701:2019

ISO/IEC 27001:2022 and ISO/IEC 27701:2019

EU-based data hosting & GDPR compliance

GDPR compliance

Security

We operate a certified Information Security Management System (ISMS) and Privacy Information Management System (PIMS) compliant with ISO/IEC 27001:2022 (Information Security) and ISO/IEC 27701:2019 (Privacy Management), respectively. You can find our certificates here: https://penneo.com/iso-certificates/.

This ensures we have best practise security measures in place at both technical and organisational level. For an overview of our security measures, read our Data Processing Addendum at https://penneo.com/terms/.

Data privacy

All customer data, including documents, signatures, and personal information, is stored and processed exclusively within secure AWS data centers in the European Union (Frankfurt and Dublin). Read our Privacy Policy, Data Processing Addendum, or contact our DPO at compliance@penneo.com for more information.

EU Qualified Trust Service Provider (eIDAS)

Penneo is recognized on the European Union Trust List (EUTL) as a Qualified Trust Service Provider (QTSP), authorizing Penneo to provide legally binding trust services across the EU.  View Penneo’s QTSP documentation and certificates at eutl.penneo.com.

Platform availability 

Penneo is committed to a highly available and reliable platform. You can view our real-time and historical system status at any time. Check Live System Status.

Additional regulatory compliance 

We continuously monitor the evolving regulatory landscape to ensure our platform meets the needs of customers in regulated industries.

  • Governance & Sustainability: Penneo is committed to operating as a responsible business by minimizing our environmental impact and upholding strong social and governance principles. Read more about it here. 
  • DORA (Digital Operational Resilience Act): Penneo supports financial entities’ ICT risk management and reporting obligations under DORA. Please contact compliance@penneo.com for further information. 
  • EU Data Act: Our commitment to data portability and interoperability aligns with the principles of the EU Data Act. Read our Data Act Addendum for more information. 
  • Accessibility: We are committed to ensuring our platform is accessible to all end-users. Read our Accessibility Statement for more information. 

Talk to our experts

Book a quick demo and we’ll walk you through the key features and answer your questions – no pressure, just clarity.

BOOK A DEMO

Get a free trial today

Sign your first documents with Penneo Sign and see how easy digital compliance can be. No credit card needed.

GET A FREE TRIAL