# Trust

Certifications, data protection, security overview and the supplier document pack

Information for procurement and IT teams assessing Diarybook as a supplier.

## Certifications held

| Certification | Status | Valid until |
|---------------|--------|-------------|
| ISO 9001:2015 (Paragon Assurance) | Held | 24 December 2026 |
| Cyber Essentials (IASME) | Held | Recertification due 26 May 2027 |
{.table}

Full details, scope and downloadable certificates: [Certifications](/trust/certifications/).

<!-- NEEDS CAPTURE: any certifications in progress (ISO 27001?) with confirmed target dates —
     list them here as "in progress" once confirmed, never as achieved. -->

## Assessor documentation

Data protection details, a security overview and a downloadable supplier document pack for
security questionnaires are being prepared for this section.

<!-- The data-protection, security-overview and documents pages exist as drafts; publish each as
     its content is confirmed and link them from here. -->

<!-- NEEDS CAPTURE: the contact route for assessors who need documentation before the pack is
     published (named inbox or contact form). -->

## Pages in this section

- [Certifications](https://diarybook.com/docs/trust/certifications/): Diarybook certifications: ISO 9001:2015 and Cyber Essentials — certificates, scope and expiry dates
- [Data Protection](https://diarybook.com/docs/trust/data-protection/): How DiaryBook handles personal data: GDPR roles, hosting, sub-processors, retention and security measures.

---
Source: https://diarybook.com/docs/trust/
