Skip to main content
Gigs logo

Gigs

Regulatory evidence

The OS for Embedded Telecom

gigs.comHR and HRISLast verified 21 Sep 2026

Gigs against third-party requirements

For each regulation, how many of the requirements it places on your vendors Gigs’s public evidence reaches. Open one for every item with its date and source.

Documents on the trust centre

What the vendor lists, typed; public items can be read now, the rest are available on request.

11 documents listed on Gigs’s trust centre

trust.gigs.com
  • Architecture or data-flow diagram
    • Gigs Architecture and Systems Diagramon request · seen 21 Sep 2026
  • Business continuity and disaster recovery plan
    • Business Continuity and Disaster Recovery Planon request · seen 21 Sep 2026
    • Disaster Recovery Test Resultson request · seen 21 Sep 2026
  • Incident response plan
    • Incident Response Plan (Availability)on request · seen 21 Sep 2026
    • Incident Response Plan (Security)on request · seen 21 Sep 2026
  • Cyber insurance certificate
    • Cyber Insurance COI 2026/2027on request · seen 21 Sep 2026
  • PCI DSS attestation of compliance
    • PCI DSS 4.0.1. SAQ A and AoCon request · seen 21 Sep 2026
  • Penetration test report
    • Application Penetration Test 2026 - Retesting Reporton request · seen 21 Sep 2026
    • Application Penetration Test 2026 - Security Audit Summaryon request · seen 21 Sep 2026
  • SOC 2 report
    • Gigs SOC 2 Type II Reporton request · seen 21 Sep 2026
  • SOC 3 report
    • Gigs SOC 3 Reportpublic · seen 21 Sep 2026

What the vendor says

Answers the vendor publishes to questions buyers ask, quoted with the link to where it says so.

  • Where data is hosted or processed

    Where are your servers located?

    Gigs operates exclusively on Google Cloud (GPC) with data residency in EU regions. For subprocessors please refer to https://trust.gigs.com/subprocessors

    Regions named: EUas of 21 Sep 2026Source

  • Encryption

    Do you encrypt data at rest?

    Yes, data is stored in encrypted Cloud SQL instances and encrypted Google Cloud Storage Buckets using AES-256.

    as of 21 Sep 2026Source

  • Encryption

    How does Gigs encrypt data in-transit?

    Gigs uses TLS 1.2 or higher for data transmissions over potentially insecure networks. We also use features such as HSTS (HTTP Stric Transport Security). TLS keys and certificates are managed by Google Cloud.

    as of 21 Sep 2026Source

  • Penetration testing

    Does Gigs perform Penetration Tests?

    Yes, we perform Penetration Tests through external parties at least annually. Scopes may include Web Application Security, Telecom-specific Security and Infrastructure Security.

    as of 21 Sep 2026Source

All articles

This maps third-party obligations to the vendor evidence that may support them. It is not legal advice and never a statement that a vendor or its customers comply; confirm scope and sufficiency with your counsel or auditor. “No public evidence” means nothing public was found at the last check. Citations link to the official text.