Document metadata
- Status
- Maintained
- Approval
- Approved
- Version
- 1.0
- Classification
- PUBLIC
- Owner
- Lightning IT Documentation Maintainers
- Approver
- Lightning IT Security and Compliance Maintainers
- Audience
- customers, partners, security reviewers, compliance reviewers
- Last reviewed
- Next review
- (Annual)
Trust Center
This Trust Center separates approved rules, documented processes, verified implementation, evidence, and future intent. A statement applies only to its named scope. It is not a certification, audit opinion, or promise that every practice applies to every customer environment.
How to read a trust statement
| Visible type | What it means |
|---|---|
| Policy | An approved rule or intent; it does not prove execution. |
| Documented process | A repeatable procedure; it does not prove a run occurred. |
| Current implementation | A capability verified for the stated revision and scope. |
| Objective evidence | An attributable observation with identity, method, date, and limits. |
| External verification | A bounded conclusion by a named independent party. |
| Target state / planned improvement | A destination or tracked change, not current behavior. |
| Unverified | Support is missing or stale; no affirmative conclusion is allowed. |
Topics and accountable roles
| Topic | Accountable role | Public page |
|---|---|---|
| Principles and accountability | Engineering Governance Owner | Principles |
| Development lifecycle | Engineering Process Owner | Development |
| AI-assisted engineering | AI Governance Owner | AI-assisted engineering |
| Quality and testing | Quality Owner | Quality |
| Release and maintenance | Release Owner | Releases |
| Security and vulnerability handling | Security Owner | Security |
| Dependency and supply chain | Supply-chain Owner | Supply chain |
| Assurance frameworks and formats | Assurance Owner | Assurance |
| Build integrity | Build and Release Owner | Build integrity |
| Compliance positioning | Compliance Owner | Compliance positioning |
| Evidence and document governance | Evidence and Documentation Owner | Governance |
Restricted findings, risks, incidents, customer evidence, credentials, topology, and audit work papers are never published here. Missing safe public support is shown as Unverified or as an owned gap.